(L1) Ensure ‘Enforce password history’ is set to ’24 or more password(s)’ Details This policy setting determines the number of renewed, unique passwords that have to be associated with a user account...
(L1) Ensure ‘Force shutdown from a remote system’ is set to ‘Administrators’ Details This policy setting allows users to shut down Windows Vista-based and newer computers from remote locations on the network....
(L1) Ensure ‘Generate security audits’ is set to ‘LOCAL SERVICE, NETWORK SERVICE’ Details This policy setting determines which users or processes can generate audit records in the Security log. The recommended state...
(L1) Ensure ‘Impersonate a client after authentication’ is set to ‘Administrators, LOCAL SERVICE, NETWORK SERVICE, SERVICE’ Details The policy setting allows programs that run on behalf of a user to impersonate that user (or another specified...
(L1) Ensure ‘Manage auditing and security log’ is set to ‘Administrators’ Details This policy setting determines which users can change the auditing options for files and directories and clear the Security...
(L1) Ensure ‘Maximum password age’ is set to ’60 or fewer days, but not 0′ Details This policy setting defines how long a user can use their password before it expires. Values for this policy...
(L1) Ensure ‘Minimum password age’ is set to ‘1 or more day(s)’ Details This policy setting determines the number of days that you must use a password before you can change it....
(L1) Ensure ‘Minimum password length’ is set to ’14 or more character(s)’ Details This policy setting determines the least number of characters that make up a password for a user account. There...
(L1) Ensure ‘Modify an object label’ is set to ‘No One’ Details This privilege determines which user accounts can modify the integrity label of objects, such as files, registry keys, or...
(L1) Ensure ‘Modify firmware environment values’ is set to ‘Administrators’ Details This policy setting allows users to configure the system-wide environment variables that affect hardware configuration. This information is typically...