Defines if the PIN cache is applicable for operations with a private key configured for "PIN Always". If enabled, a confirmation dialog guarantees non-repudiation for these operations.
If this setting is not configured or disabled, then PIN entry is required for all operations with a private key configured for "PIN Always".
Note: If this setting is enabled, per-process PIN caching is recommended for improved security, and is required for FIPS 201 compliance.
Registry Hive | HKEY_LOCAL_MACHINE |
Registry Path | SOFTWARE\Policies\HID Global\SharedStore\Authentication |
Value Name | EnablePINCacheForPINAlwaysPrivateKeys |
Value Type | REG_DWORD |
Enabled Value | 1 |
Disabled Value | 0 |