Turn off picture password sign-inID: oval:org.secpod.oval:def:82847 | Date: (C)2022-08-12 (M)2023-07-31 |
Class: COMPLIANCE | Family: windows |
This policy setting allows you to control whether a domain user can sign in using a picture password.
If you enable this policy setting, a domain user cannot set up or sign in with a picture password.
If you disable or do not configure this policy setting, a domain user can set up and use a picture password.
Note that the user domain password will be cached in the system vault when using this feature.
Fix:
(1) GPO: Computer Configuration\Administrative Templates\System\Logon!Turn off picture password sign-in
(2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\System!BlockDomainPicturePassword
Platform: |
Microsoft Windows Server 2012 |