Microsoft Windows Server 2016

The network selection user interface (UI) must not be displayed on the logon screen

STIG ID: WN16-CC-000180 | SRG: SRG-OS-000095-GPOS-00049 | Severity: Medium | CCI: CCI-000381 | Vulnerability ID: V-224928

Description

Enabling interaction with the network selection UI allows users to change connections to available networks without signing in to Windows.

Check

Verify the registry value below. If it does not exist or is not configured as specified, this is a finding.Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \SOFTWARE\Policies\Microsoft\Windows\System\Value Name: DontDisplayNetworkSelectionUIValue Type: REG_DWORDValue: 0x00000001 (1)

Fix

Configure the policy value for Computer Configuration >> Administrative Templates >> System >> Logon >> "Do not display network selection UI" to "Enabled".