Enable PIN caching for "PIN Always" private keys

Defines if the PIN cache is applicable for operations with a private key configured for "PIN Always". If enabled, a confirmation dialog guarantees non-repudiation for these operations.

If this setting is not configured or disabled, then PIN entry is required for all operations with a private key configured for "PIN Always".

Note: If this setting is enabled, per-process PIN caching is recommended for improved security, and is required for FIPS 201 compliance.

Supported on: At least Windows Vista SP1

Registry HiveHKEY_LOCAL_MACHINE
Registry PathSOFTWARE\Policies\HID Global\SharedStore\Authentication
Value NameEnablePINCacheForPINAlwaysPrivateKeys
Value TypeREG_DWORD
Enabled Value1
Disabled Value0

hidglobal.activclient.admx

Administrative Templates (Computers)