DISA STIG for Microsoft Dot Net Framework 4.0 v2r3

Audit Details

Name: DISA STIG for Microsoft Dot Net Framework 4.0 v2r3

Updated: 4/30/2024

Authority: DISA STIG

Plugin: Windows

Revision: 1.0

Estimated Item Count: 17

File Details

Filename: DISA_STIG_Microsoft_Dot_Net_Framework_4.0_v2r3.audit

Size: 89 kB

MD5: 66a2e35d2e7f5cc9170690c5640b7bae
SHA256: ec07841035876827ebc8e83344b53d4f7bb4d5fc06d9bede5411ac8051eccc24

Audit Items

DescriptionCategories
APPNET0031 - Digital signatures assigned to strongly named assemblies must be verified.

IDENTIFICATION AND AUTHENTICATION

APPNET0046 - The Trust Providers Software Publishing State must be set to 0x23C00.

IDENTIFICATION AND AUTHENTICATION

APPNET0048 - Developer certificates used with the .NET Publisher Membership Condition must be approved by the ISSO.

IDENTIFICATION AND AUTHENTICATION

APPNET0052 - Encryption keys used for the .NET Strong Name Membership Condition must be protected.

IDENTIFICATION AND AUTHENTICATION

APPNET0055 - CAS and policy configuration files must be backed up.

AUDIT AND ACCOUNTABILITY

APPNET0060 - Remoting Services HTTP channels must utilize authentication and encryption.

SYSTEM AND COMMUNICATIONS PROTECTION

APPNET0061 - .Net Framework versions installed on the system must be supported.

CONFIGURATION MANAGEMENT

APPNET0062 - The .NET CLR must be configured to use FIPS approved encryption modules.

SYSTEM AND COMMUNICATIONS PROTECTION

APPNET0063 - .NET must be configured to validate strong names on full-trust assemblies.

IDENTIFICATION AND AUTHENTICATION

APPNET0064 - .Net applications that invoke NetFx40_LegacySecurityPolicy must apply previous versions of .NET STIG guidance.

CONFIGURATION MANAGEMENT

APPNET0065 - Trust must be established prior to enabling the loading of remote code in .Net 4.

SYSTEM AND COMMUNICATIONS PROTECTION

APPNET0066 - .NET default proxy settings must be reviewed and approved.

CONFIGURATION MANAGEMENT

APPNET0067 - Event tracing for Windows (ETW) for Common Language Runtime events must be enabled.

AUDIT AND ACCOUNTABILITY

APPNET0070 - Software utilizing .Net 4.0 must be identified and relevant access controls configured.

SYSTEM AND COMMUNICATIONS PROTECTION

APPNET0071 - Remoting Services TCP channels must utilize authentication and encryption.

SYSTEM AND COMMUNICATIONS PROTECTION

APPNET0075 - Disable TLS RC4 cipher in .Net.

CONFIGURATION MANAGEMENT

DISA_STIG_Microsoft_Dot_Net_Framework_4.0_v2r3.audit from DISA Microsoft DotNet Framework 4.0 v2r3 STIG