DTOO292 - Document behavior if file validation fails must be set - OpenInProtectedView

Information

This policy key controls the behavior of how Office documents should be handled when failing file validation. By requiring such documents to be opened in Protected View, any potentially malicious code would be disabled, allowing the user to edit the document and resave correctly.

Solution

Set the policy value for User Configuration -> Administrative Templates -> Microsoft PowerPoint 2013 -> PowerPoint Options -> Security -> Trust Center -> Protected View 'Set document behavior if file validation fails' to 'Enabled: Open in Protected View' and Unchecked for 'Do not allow edit'.

See Also

https://iasecontent.disa.mil/stigs/zip/U_MS_PowerPoint_2013_V1R6_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(4), CAT|II, CCI|CCI-001170, Rule-ID|SV-53524r1_rule, STIG-ID|DTOO292, Vuln-ID|V-26616

Plugin: Windows

Control ID: f5394a66de40aaaa433e07a6414e4b6befbb18dadd6c9b67d0b99ead0991be5c