Microsoft Office 365 ProPlus Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
User name and password must be disabled in all Office programs.
<VulnDiscussion>The Uniform Resource Locator (URL) standard allows user authentication to be included in URL strings in the form http://usern...Rule Medium Severity -
SRG-APP-000207
<GroupDescription></GroupDescription>Group -
The Information Bar must be enabled in all Office programs.
<VulnDiscussion>This policy setting controls whether Office 365 ProPlus applications notify users when potentially unsafe features or content...Rule Medium Severity -
SRG-APP-000516
<GroupDescription></GroupDescription>Group -
The Local Machine Zone Lockdown Security must be enabled in all Office programs.
<VulnDiscussion>Internet Explorer places restrictions on each web page users can use the browser to open. Web pages on a user's local compute...Rule Medium Severity -
SRG-APP-000179
<GroupDescription></GroupDescription>Group -
The MIME Sniffing safety feature must be enabled in all Office programs.
<VulnDiscussion>Encryption is only as good as the encryption modules utilized. Unapproved cryptographic module algorithms cannot be verified ...Rule Medium Severity -
SRG-APP-000210
<GroupDescription></GroupDescription>Group -
Object Caching Protection must be enabled in all Office programs.
<VulnDiscussion>Encryption is only as good as the encryption modules utilized. Unapproved cryptographic module algorithms cannot be verified ...Rule Medium Severity -
SRG-APP-000112
<GroupDescription></GroupDescription>Group
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules