3.004 - Secure Removable Media - CD-ROM

Information

This check verifies that Windows is configured to not limit access to CD drives when a user is logged on locally per the FDCC.

Solution

Configure the policy value for Computer Configuration -> Windows Settings -> Security Settings -> Local Policies -> Security Options -> 'Devices- Restrict CD-ROM access to locally logged-on user only' to 'Disabled'.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip