5.132 - Require username and password to elevate a running application.

Information

This check verifies that the system is configured to always require users to type in a user name and password to elevate a running application.

Solution

Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Credential User Interface 'Enumerate administrator accounts on elevation' to 'Disabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_7_V1R32_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(10), CAT|II, CCI|CCI-001084, CSCv6|16, Rule-ID|SV-25176r1_rule, STIG-ID|5.132, Vuln-ID|V-14243

Plugin: Windows

Control ID: 0e409eaada4371b06365888b71ad6fa64e0e469fbe74472b9a7a78ed8485f90e