Skip to content

Microsoft Office System 2013 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000516

    Group
  • When using the Office Feedback tool, the ability to include a screenshot must be disabled.

    The "Office Feedback" tool, also called "Send-a-Smile", allows a user to click on an icon and send feedback to Microsoft. The "Office Feedback" Tool must be configured to be disabled. In the event ...
    Rule Medium Severity
  • SRG-APP-000516

    Group
  • The ability to run unsecure Office apps must be disabled.

    Unsecure apps for Office, which are apps that have web page or catalog locations that are not SSL-secured (https://), and/or are not in users' Internet zones may allow data to be transmitted/access...
    Rule Medium Severity
  • SRG-APP-000516

    Group
  • The Office Telemetry Agent must be configured to obfuscate the file name, file path, and title of Office documents before uploading telemetry data to the shared folder.

    This policy setting configures the Office Telemetry Agent to disguise, or obfuscate, certain file properties that are reported in telemetry data. If this policy setting is enabled, Office Telemetry...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • The Opt-In Wizard must be disabled.

    The Opt-in Wizard displays the first time users run a 2013 Microsoft Office application, which allows them to opt into Internet-based services that will help improve their Office experience, such a...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • SRG-APP-000141

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules