Item Search

NameAudit NamePluginCategory
Allow loading of XAML files - Internet ZoneMSCT Windows Server v2004 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Allow only approved domains to use ActiveX controls without prompt - Internet ZoneMSCT Windows Server v2004 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Allow scripting of Internet Explorer WebBrowser controls - Internet ZoneMSCT Windows Server v2004 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow unencrypted traffic - Service - AllowUnencryptedTrafficMSCT Windows Server v2004 DC v1.0.0Windows

ACCESS CONTROL

Audit MPSSVC Rule-Level Policy ChangeMSCT Windows Server v2004 DC v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Audit Other Policy Change EventsMSCT Windows Server v2004 DC v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Audit Security System ExtensionMSCT Windows Server v2004 DC v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Audit System IntegrityMSCT Windows Server v2004 DC v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Back up files and directoriesMSCT Windows Server v2004 DC v1.0.0Windows

ACCESS CONTROL

Boot-Start Driver Initialization PolicyMSCT Windows Server v2004 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Configure Attack Surface Reduction rules - be9ba2d9-53ea-4cdc-84e5-9b1eeee46550MSCT Windows Server v2004 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Configure Windows Defender SmartScreen - ShellSmartScreenLevelMSCT Windows Server v2004 DC v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows Server v2004 DC v1.0.0Windows

ACCESS CONTROL

Debug programsMSCT Windows Server v2004 DC v1.0.0Windows

ACCESS CONTROL

Do not allow ActiveX controls to run in Protected Mode when Enhanced Protected Mode is enabledMSCT Windows Server v2004 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Domain member: Digitally encrypt or sign secure channel data (always)MSCT Windows Server v2004 DC v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Domain member: Require strong (Windows 2000 or later) session keyMSCT Windows Server v2004 DC v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Don't run antimalware programs against ActiveX controls - Intranet ZoneMSCT Windows Server v2004 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Download signed ActiveX controls - Internet ZoneMSCT Windows Server v2004 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Download signed ActiveX controls - Restricted Sites ZoneMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Enable dragging of content from different domains within a window - Restricted Sites ZoneMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Enforce password historyMSCT Windows Server v1909 DC v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Internet Explorer Processes - FEATURE_DISABLE_MK_PROTOCOL - iexplore.exeMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Internet Explorer Processes - FEATURE_MIME_HANDLING - (Reserved)MSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Internet Explorer Processes - FEATURE_MIME_HANDLING - explorer.exeMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Internet Explorer Processes - FEATURE_MIME_SNIFFING - explorer.exeMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Internet Explorer Processes - FEATURE_RESTRICT_ACTIVEXINSTALL - explorer.exeMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Internet Explorer Processes - FEATURE_SECURITYBAND - (Reserved)MSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Java permissions - Internet ZoneMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Launching applications and files in an IFRAME - Internet ZoneMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Lock pages in memoryMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Logon options - Internet ZoneMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Logon options - Restricted Sites ZoneMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

NetBT NodeType configurationMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Network access: Do not allow anonymous enumeration of SAM accounts and sharesMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Prevent bypassing SmartScreen Filter warnings about files that are not commonly downloaded from the InternetMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Prevent ignoring certificate errorsMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Prevent users and apps from accessing dangerous websitesMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Remove 'Run this time' button for outdated ActiveX controls in Internet ExplorerMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Run .NET Framework-reliant components not signed with Authenticode - Internet ZoneMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Security Zones: Do not allow users to add/delete sitesMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Set the default behavior for AutoRunMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn on Cross-Site Scripting Filter - Internet ZoneMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Turn on SmartScreen Filter scan - Internet ZoneMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Turn on SmartScreen Filter scan - Locked-Down Internet ZoneMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Turn On Virtualization Based Security - LsaCfgFlagsMSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

User Account Control: Detect application installations and prompt for elevationMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

User Account Control: Only elevate UIAccess applications that are installed in secure locationsMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

WDigest Authentication (disabling may require KB2871997)MSCT Windows Server v1909 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY