WN12-SO-000019 - The Ctrl+Alt+Del security attention sequence for logons must be enabled.

Information

Disabling the Ctrl+Alt+Del security attention sequence can compromise system security. Because only Windows responds to the Ctrl+Alt+Del security sequence, a user can be assured that any passwords entered following that sequence are sent only to Windows. If the sequence requirement is eliminated, malicious programs can request and receive a user's Windows password. Disabling this sequence also suppresses a custom logon banner.

Solution

Configure the policy value for Computer Configuration -> Windows Settings -> Security Settings -> Local Policies -> Security Options -> 'Interactive Logon: Do not require CTRL+ALT+DEL' to 'Disabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2012_and_2012_R2_DC_V3R3_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, CSCv6|3.1, CSCv6|8, Rule-ID|SV-226286r794587_rule, STIG-ID|WN12-SO-000019, STIG-Legacy|SV-52866, STIG-Legacy|V-1154, Vuln-ID|V-226286

Plugin: Windows

Control ID: c3a53c60fd941402f7182b2ffaa6abb088bee8e43f15045b3c9e413d5d15a916