Skip to content

Microsoft InfoPath 2013 STIG

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Disabling email forms from the Internet Security Zone must be configured.

    InfoPath email forms can be designed by an external attacker and sent over the Internet as part of a phishing attempt. Users might fill out such forms and provide sensitive information to the attac...
    Rule Medium Severity
  • DTOO171 - EMail forms in Restricted Security

    Group
  • DTOO159 - Fully trusted solutions access

    Group
  • Disabling of Fully Trusted Solutions access to computers must be configured.

    InfoPath users can choose whether to allow trusted forms to run on their computers. The Full Trust security level allows a form to access local system resources, such as COM components or files on ...
    Rule Medium Severity
  • DTOO158 - Solutions from the Internet Zone

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules