1.1.3.6.5 Set 'Interactive logon: Number of previous logons to cache (in case domain controller is not available)' to '4 or fewer logon(s)'

Information

This policy setting determines whether a user can log on to a Windows domain using cached account information.

Solution

Make sure 'Interactive logon: Number of previous logons to cache (in case domain controller is not available)' is set to 4 or fewer logons.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(13), CSCv6|16

Plugin: Windows

Control ID: de5dfe55ec9f908a1273685eec7299e81926098d987a008ebc323a80182a6331