Skip to content

Microsoft Office System 2016 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Automation Security to enforce macro level security in Office documents must be configured.

    <VulnDiscussion>This policy setting controls whether macros can run in an Office 2016 application that is opened programmatically by another ...
    Rule Medium Severity
  • SRG-APP-000516

    <GroupDescription></GroupDescription>
    Group
  • A mix of policy and user locations for Office Products must be disallowed.

    &lt;VulnDiscussion&gt;This policy setting controls whether trusted locations can be defined by users, the Office Customization Tool (OCT), and Grou...
    Rule Medium Severity
  • SRG-APP-000516

    <GroupDescription></GroupDescription>
    Group
  • Smart Documents use of Manifests in Office must be disallowed.

    &lt;VulnDiscussion&gt;This policy setting controls whether Office 2016 applications can load an XML expansion pack manifest file with a Smart Docum...
    Rule Medium Severity
  • SRG-APP-000340

    <GroupDescription></GroupDescription>
    Group
  • Connection verification of permissions must be enforced.

    &lt;VulnDiscussion&gt;This policy setting controls whether users are required to connect to the Internet or a local network to have their licenses ...
    Rule Medium Severity
  • SRG-APP-000516

    <GroupDescription></GroupDescription>
    Group
  • Inclusion of document properties for PDF and XPS output must be disallowed.

    &lt;VulnDiscussion&gt;This policy setting controls whether document metadata can be saved in PDF and XPS documents. If you enable this policy setti...
    Rule Medium Severity
  • Office Presentation Service must be removed as an option for presenting PowerPoint and Word online.

    &lt;VulnDiscussion&gt;This policy setting allows you to remove Office Presentation Service from the list of online presentation services in PowerPo...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules