This is not the latest version of the STIG. This is provided for archival purposes. See the latest STIG.

The operating system must prohibit the use of cached authenticators after one day.

STIG ID: SRG-OS-000383-GPOS-00166  |  SRG: SRG-OS-000383 |  Severity: medium (CAT II)  |  CCI: CCI-002007 |  Vulnerability Id: V-203733

Vulnerability Discussion

If cached authentication information is out-of-date, the validity of the authentication information may be questionable.

Check

Verify the operating system prohibits the use of cached authenticators after one day. If it does not, this is a finding.

Fix

Configure the operating system to prohibit the use of cached authenticators after one day.