1.115 WN19-CC-000220

Information

Windows Server 2019 default AutoRun behavior must be configured to prevent AutoRun commands.

GROUP ID:V-205805
RULE ID:SV-205805r958804

Allowing AutoRun commands to execute may introduce malicious code to a system. Configuring this setting prevents AutoRun commands from executing.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> AutoPlay Policies >> 'Set the default behavior for AutoRun' to 'Enabled' with 'Do not execute any autorun commands' selected.

See Also

https://workbench.cisecurity.org/benchmarks/22176

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(4)

Plugin: Windows

Control ID: e271050bd9efcadb21ebebbfb6baed985938cb3069c366fd3d91238665b08dea