2.008 - Local volumes are not formatted using NTFS.

Information

This is a category 1 finding because the ability to set access permissions and audit critical directories and files is only available by using the NTFS file system. The capability to assign access permissions to file objects is a DOD policy requirement.
The FAT file system only provides the capability to make files read-only and hidden. The capability to change these attributes is not restricted to any users. An unauthorized individual could boot the machine from a floppy disk and gain full and unrecorded access to file data.

Solution

Format all partitions/drives to use NTFS.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|I, CCI|CCI-000213, Rule-ID|SV-29477r1_rule, STIG-ID|2.008, Vuln-ID|V-1081

Plugin: Windows

Control ID: a9eabfd023a85ebbb67e39ff503cefb532ef6c4af8fa79b8c2c44c41985a5e6d