1.114 WN19-CC-000210

Information

Windows Server 2019 Autoplay must be turned off for non-volume devices.

GROUP ID:V-205804
RULE ID:SV-205804r958804

Allowing AutoPlay to execute may introduce malicious code to a system. AutoPlay begins reading from a drive as soon as media is inserted into the drive. As a result, the setup file of programs or music on audio media may start. This setting will disable AutoPlay for non-volume devices, such as Media Transfer Protocol (MTP) devices.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> AutoPlay Policies >> 'Disallow Autoplay for non-volume devices' to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/22176

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(4)

Plugin: Windows

Control ID: e38c78495519dddd52d1a726b230ffcdb9bb65ca5a56a8b61a2416a2dfc2ead7