WN10-CC-000060 - Connections to non-domain networks when connected to a domain authenticated network must be blocked.

Information

Multiple network connections can provide additional attack vectors to a system and should be limited. When connected to a domain, communication must go through the domain connection.

Solution

Configure the policy value for Computer Configuration >> Administrative Templates >> Network >> Windows Connection Manager >> 'Prohibit connection to non-domain networks when connected to domain authenticated network' to 'Enabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_10_V3R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-220807r991589_rule, STIG-ID|WN10-CC-000060, STIG-Legacy|SV-78075, STIG-Legacy|V-63585, Vuln-ID|V-220807

Plugin: Windows

Control ID: 5ac78a61ae7ca34857ec1390fdb3ad37b4fa8774322095ad5eeecd5fa89e3b10