Item Search

NameAudit NamePluginCategory
2.2.32 Ensure 'Deny log on locally' to include 'Guests' (STIG DC only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

ACCESS CONTROL

2.3.7.10 Ensure 'Interactive logon: Smart card removal behavior' is set to 'Lock Workstation' or 'Force Logoff' (STIG DC & MS only)CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG DCWindows

ACCESS CONTROL

2.3.7.10 Ensure 'Interactive logon: Smart card removal behavior' is set to 'Lock Workstation' or 'Force Logoff' (STIG DC & MS only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

ACCESS CONTROL

2.3.7.10 Ensure 'Interactive logon: Smart card removal behavior' is set to 'Lock Workstation' or 'Force Logoff' (STIG only)CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG MSWindows

ACCESS CONTROL

2.3.10.3 Ensure 'Network access: Do not allow anonymous enumeration of SAM accounts' is set to 'Enabled' (STIG DC & MS only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG MSWindows

ACCESS CONTROL

2.3.22.2 Ensure 'Block signing into Office' is set to 'Enabled: Org ID only'CIS Microsoft Office Enterprise v1.2.0 L1Windows

ACCESS CONTROL

2.11.8.7.2.2.3 (L1) Ensure 'Set document behavior if file validation fails' is set to 'Enabled: Open in Protected View'CIS Microsoft Intune for Office v1.1.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

2.11.8.7.2.10 (L1) Ensure 'VBA Macro Notification Settings' is set to 'Enabled: Disable all except digitally signed macros'CIS Microsoft Intune for Office v1.1.0 L1Windows

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

17.7.2 Ensure 'Audit Audit Policy Change' is set to include 'Success and Failure' (STIG only)CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG DCWindows

AUDIT AND ACCOUNTABILITY

Block Flash activation in Office documents - ActivationFilterOverride - D27CDB6E-AE6D-11CF-96B8-444553540000 - Office - WOW6432NodeMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO104 - Access - Disabling of user name and password syntax from being used in URLs must be enforced.DISA STIG Office 2010 Access v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO104 - Project - Disabling of user name and password syntax from being used in URLs must be enforced.DISA STIG Office 2010 Project v1r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO121 - PowerPoint - Files from the Internet zone must be opened in Protected View.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO123 - Access - Navigation to URL's embedded in Office products must be blocked.DISA STIG Office 2010 Access v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO127 - Add-ins to Office applications must be signed by a Trusted PublisherDISA STIG Microsoft Office Access 2016 v1r1Windows

CONFIGURATION MANAGEMENT

DTOO127 - InfoPath - Application add-ins must be signed by Trusted Publisher.DISA STIG Office 2010 InfoPath v1r12Windows

CONFIGURATION MANAGEMENT

DTOO127 - PowerPoint - Application add-ins must be signed by Trusted Publisher.DISA STIG Office 2010 PowerPoint v1r11Windows

CONFIGURATION MANAGEMENT

DTOO128 - PowerPoint - Data Execution Prevention must be enforced.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO128 - Word - Data Execution Prevention must be enforced.DISA STIG Office 2010 Word v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO131 - PowerPoint - Trust Bar Notifications for unsigned application add-ins must be blocked.DISA STIG Office 2010 PowerPoint v1r11Windows

CONFIGURATION MANAGEMENT

DTOO167 - InfoPath - Opening behavior for EMail forms containing code or scripts must be controlled.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO170 - InfoPath - InfoPath 2003 forms as email forms in InfoPath 2010 must be disallowed.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO173 - InfoPath - Disabling of email forms from the Full Trust Security Zone must be configured.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO177 - Office System - Access to updates, add-ins, and patches on Office.com must be disabled.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO185 - Automatic receiving of small updates to improve reliability must be disallowed.DISA STIG Microsoft Office System 2013 v2r2Windows

CONFIGURATION MANAGEMENT

DTOO196 - Office System - A mix of policy and user locations for Office Products must be disallowed.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO202 - Office System - Microsoft passport Service for content must be disallowed.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO211 - Access - ActiveX Installs must be configured for proper restriction.DISA STIG Office 2010 Access v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO211 - Word - ActiveX Installs must be configured for proper restriction.DISA STIG Office 2010 Word v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO220 - Upload method for publishing calendars to Office Online must be restricted.DISA STIG Microsoft Outlook 2013 v1r14Windows

CONFIGURATION MANAGEMENT

DTOO256 - Outlook - Trusted add-ins behavior for eMail must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO264 - Outlook - All signed messages as clear signed messages must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO266 - Outlook - Automatic sending s/Mime receipt requests must be disallowed.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO274 - Outlook - Internet with Safe Zones for Picture Download must be disabled.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO288 - PowerPoint - Files in unsafe locations must be opened in Protected View.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO291 - PowerPoint - Automatic download of linked images must be disallowed.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO294 - InfoPath - InfoPath must be enforced to not use e-mail forms from the Intranet security zone.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO295 - InfoPath - InfoPath e-mail forms in Outlook must be disallowed.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO303 - Word - A warning before printing that the document contains tracking changes must be provided.DISA STIG Office 2010 Word v1r12Windows

CONFIGURATION MANAGEMENT

DTOO306 - Office System - Hyperlinks to web templates in File | New and task panes must be disabled.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO313 - Outlook - Automatically downloading enclosures on RSS must be disallowed.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO316 - Outlook - Outlook minimum encryption key length settings must be set.DISA STIG Office 2010 Outlook v1r14Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO320 - Outlook - Check e-mail addresses against addresses of certificates being used must be disallowed.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO334 - Word - Word 2000 binary documents and templates must be configured to edit in protected view.DISA STIG Office 2010 Word v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO338 - Word - Word 97 binary documents and templates must be configured to edit in protected view.DISA STIG Office 2010 Word v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Require that application add-ins are signed by Trusted Publisher - powerpointMSCT M365 Apps for enterprise 2312 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Require that application add-ins are signed by Trusted Publisher - publisherMSCT M365 Apps for enterprise 2412 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Require that application add-ins are signed by Trusted Publisher - requireaddinsigMSCT M365 Apps for enterprise 2312 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Require that application add-ins are signed by Trusted Publisher - requireaddinsig - ms projectMSCT Microsoft 365 Apps for Enterprise 2206 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Require that application add-ins are signed by Trusted Publisher - wordMSCT M365 Apps for enterprise 2312 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY