Skip to content

Microsoft Office System 2010 STIG

Rules, Groups, and Values defined within the XCCDF Benchmark

  • DTOO177-Disable Updates from Office Online Site

    Group
  • Access to updates, add-ins, and patches on Office.com must be disabled.

    Having access to updates, add-ins, and patches on the Office Online Web site can help users ensure computers are up to date and equipped with the latest security patches. However, to ensure updates...
    Rule Medium Severity
  • DTOO186 - Trust Bar Notifications

    Group
  • Trust Bar notifications for Security messages must be enforced.

    The Message Bar in Office applications is used to identify security issues, such as unsigned macros or potentially unsafe add-ins. When such issues are detected, the application disables the unsafe...
    Rule Medium Severity
  • DTOO207 - Document Info Beaconing UI

    Group
  • Document Information panel Beaconing must show UI.

    For controlling whether users see a security warning when they open custom Document Information Panels that contain a Web beaconing threat. Web beacons can be used to contact an external server wh...
    Rule Medium Severity
  • DTOO184 - Cust. Experience Improvement Program

    Group
  • DTOO190 - Encr. type for Password Protected files

    Group
  • The encryption type for password protected Office 97 thru Office 2003 must be set.

    If unencrypted files are intercepted, sensitive information in the files can be compromised. To protect information confidentiality, Microsoft Office application files can be encrypted and password...
    Rule Medium Severity
  • DTOO189 - Encryption Type for Pwd Protected files

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules