Skip to content

Microsoft SharePoint 2013 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000212

    Group
  • The SharePoint Central Administration site must not be accessible from Extranet or Internet connections.

    SharePoint must prevent the presentation of information system management-related functionality at an interface utilized by general, (i.e., non-privileged), users. The Central Administrator is an...
    Rule Medium Severity
  • SRG-APP-000039

    Group
  • For environments requiring an Internet-facing capability, the SharePoint application server upon which Central Administration is installed, must not be installed in the DMZ.

    Information flow control regulates where information is allowed to travel within an information system and between information systems (as opposed to who is allowed to access the information) and w...
    Rule Medium Severity
  • SRG-APP-000516

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules