| Table 1: Secure Workstation Template Settings |
|
Category |
Policy |
Default Setting |
|
Account Policies - Password Policy |
Enforce password history |
Remember 24 passwords |
| |
Maximum password age |
42 days |
| |
Minimum password age |
2 days |
| |
Minimum password length |
8 characters |
| |
Passwords must meet complexity requirements |
Enabled |
| |
Store password using reversible encryption for all users in the domain |
Disabled |
|
Account Policies - Account Lockout Policy |
Account lockout duration |
30 minutes |
| |
Account lockout threshold |
5 invalid logon attempts |
| |
Reset account lockout counter after |
30 minutes |
|
Local Policies - Audit Policy |
Audit account logon events |
Success, Failure |
| |
Audit account management |
Success, Failure |
| |
Audit logon events |
Failure |
| |
Audit policy change |
Success, Failure |
| |
Audit privilege use |
Failure |
|
Local Policies - Security Options |
Amount of idle time before disconnection session |
15 minutes |
| |
Unsigned driver installation behavior |
Warn but allow installation |