WN12-CC-000025 - Device driver updates must only search managed servers, not Windows Update.

Information

Uncontrolled system updates can introduce issues to a system. Obtaining update components from an outside source may also potentially provide sensitive information outside of the enterprise. Device driver updates must be obtained from an internal source.

Solution

Configure the policy value for Computer Configuration -> Administrative Templates -> System -> Device Installation -> 'Specify the search server for device driver updates' to 'Enabled' with 'Search Managed Server' selected.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2012_and_2012_R2_MS_V3R7_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-11(2), CAT|III, CCI|CCI-001812, Rule-ID|SV-225335r852203_rule, STIG-ID|WN12-CC-000025, STIG-Legacy|SV-51607, STIG-Legacy|V-36678, Vuln-ID|V-225335

Plugin: Windows

Control ID: 187a198338d2e9fdaad6075cf568f32c44417cec6739bf183ec8b33bc8440ae5