1.1.1.2.1.74 Set 'Recovery console: Allow automatic administrative logon' to 'Disabled'

Information

The recovery console is a command-line environment that is used to recover from system problems. If you enable this policy setting, the administrator account is automatically logged on to the recovery console when it is invoked during startup. The Recovery Console can be very useful when you need to troubleshoot and repair computers that do not start. However, it is dangerous to allow automatic logon to the console. Anyone could walk up to the server, disconnect the power to shut it down, restart it, select Recover Console from the Restart menu, and then assume full control of the server.

Solution

To implement the recommended configuration state, set the following Group Policy setting to 0.

Computer Configuration\Windows Settings\Security Settings\Local Policies\Security Options\Recovery console- Allow automatic administrative logon

Impact- Users will have to enter a user name and password to access the Recovery Console.

See Also

https://workbench.cisecurity.org/files/42

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(10), CCE|CCE-3659-0

Plugin: Windows

Control ID: bc3b3c6e981b89771b293f7ba1bd7e521a2b8cd7fa79c662e82feccbb2694ef1