Microsoft Excel 2016 Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Open/Save actions for Excel 4 macrosheets and add-in files must be blocked.
<VulnDiscussion>This policy setting allows you to determine whether users can open, view, edit, or save Excel files with the format specified...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Open/Save actions for Excel 4 workbooks must be blocked.
<VulnDiscussion>This policy setting allows you to determine whether users can open, view, edit, or save Excel files with the format specified...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Open/Save actions for Excel 4 worksheets must be blocked.
<VulnDiscussion>This policy setting allows you to determine whether users can open, view, edit, or save Excel files with the format specified...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Actions for Excel 95 workbooks must be configured to edit in Protected View.
<VulnDiscussion>This policy setting allows you to determine whether users can open, view, edit, or save Excel files with the format specified...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Actions for Excel 95-97 workbooks and templates must be configured to edit in Protected View.
<VulnDiscussion>This policy setting allows you to determine whether users can open, view, edit, or save Excel files with the format specified...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Blocking as default file block opening behavior must be enforced.
<VulnDiscussion>This policy setting allows you to determine if users can open, view, or edit Excel files. If you enable this policy setting, ...Rule Medium Severity -
SRG-APP-000112
<GroupDescription></GroupDescription>Group -
Enabling IE Bind to Object functionality must be present.
<VulnDiscussion>Internet Explorer performs a number of safety checks before initializing an ActiveX control. It will not initialize a control...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Open/Save actions for Dif and Sylk files must be blocked.
<VulnDiscussion>This policy setting allows you to determine whether users can open, view, edit, or save Excel files with the format specified...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
Navigation to URLs embedded in Office products must be blocked.
<VulnDiscussion>To protect users from attacks, Internet Explorer usually does not attempt to load malformed URLs. This functionality can be c...Rule Medium Severity -
SRG-APP-000112
<GroupDescription></GroupDescription>Group -
SRG-APP-000210
<GroupDescription></GroupDescription>Group
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.