WN11-CC-000260 - Windows 11 must be configured to require a minimum pin length of six characters or greater.

Information

Windows allows the use of PINs as well as biometrics for authentication without sending a password to a network or website where it could be compromised. Longer minimum PIN lengths increase the available combinations an attacker would have to attempt. Shorter minimum length significantly reduces the strength.

Solution

Configure the policy value for Computer Configuration >> Administrative Templates >> System >> PIN Complexity >> 'Minimum PIN length' to '6' or greater.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_11_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-253401r991589_rule, STIG-ID|WN11-CC-000260, Vuln-ID|V-253401

Plugin: Windows

Control ID: ab0408d42be4e86c9150b73e28cc89a37cb8c4e58c3d4e4f009e1e4b0d0326a2