Skip to content

Microsoft Windows Defender Firewall with Advanced Security Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Windows Defender Firewall with Advanced Security must log dropped packets when connected to a public network.

    <VulnDiscussion>A firewall provides a line of defense against attack. To be effective, it must be enabled and properly configured. Logging of...
    Rule Low Severity
  • SRG-OS-000327-GPOS-00127

    <GroupDescription></GroupDescription>
    Group
  • Windows Defender Firewall with Advanced Security must log successful connections when connected to a public network.

    &lt;VulnDiscussion&gt;A firewall provides a line of defense against attack. To be effective, it must be enabled and properly configured. Logging of...
    Rule Low Severity
  • SRG-OS-000480-GPOS-00227

    <GroupDescription></GroupDescription>
    Group
  • Inbound exceptions to the firewall on domain workstations must only allow authorized remote management hosts.

    &lt;VulnDiscussion&gt;Allowing inbound access to domain workstations from other systems may allow lateral movement across systems if credentials ar...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules