Skip to content

Microsoft Windows Server 2022 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-OS-000341-GPOS-00132

    Group
  • SRG-OS-000341-GPOS-00132

    Group
  • SRG-OS-000095-GPOS-00049

    Group
  • SRG-OS-000433-GPOS-00192

    Group
  • SRG-OS-000480-GPOS-00227

    Group
  • SRG-OS-000480-GPOS-00227

    Group
  • SRG-OS-000373-GPOS-00156

    Group
  • Windows Server 2022 must not save passwords in the Remote Desktop Client.

    Saving passwords in the Remote Desktop Client could allow an unauthorized user to establish a remote desktop session to another system. The system must be configured to prevent users from saving pa...
    Rule Medium Severity
  • SRG-OS-000138-GPOS-00069

    Group
  • SRG-OS-000373-GPOS-00156

    Group
  • Windows Server 2022 Remote Desktop Services must always prompt a client for passwords upon connection.

    This setting controls the ability of users to supply passwords automatically as part of their remote desktop connection. Disabling this setting would allow anyone to use the stored credentials in a...
    Rule Medium Severity
  • SRG-OS-000033-GPOS-00014

    Group
  • SRG-OS-000033-GPOS-00014

    Group
  • Windows Server 2022 Remote Desktop Services must be configured with the client connection encryption set to High Level.

    Remote connections must be encrypted to prevent interception of data or sensitive information. Selecting "High Level" will ensure encryption of Remote Desktop Services sessions in both directions. ...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • Windows Server 2022 must prevent attachments from being downloaded from RSS feeds.

    Attachments from RSS feeds may not be secure. This setting will prevent attachments from being downloaded from RSS feeds.
    Rule Medium Severity
  • SRG-OS-000095-GPOS-00049

    Group
  • Windows Server 2022 must disable Basic authentication for RSS feeds over HTTP.

    Basic authentication uses plain-text passwords that could be used to compromise a system. Disabling Basic authentication will reduce this potential.
    Rule Medium Severity
  • SRG-OS-000095-GPOS-00049

    Group
  • Windows Server 2022 must prevent Indexing of encrypted files.

    Indexing of encrypted files may expose sensitive data. This setting prevents encrypted files from being indexed.
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules