Skip to content

Microsoft Windows 11 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-OS-000480-GPOS-00227

    <GroupDescription></GroupDescription>
    Group
  • Alternate operating systems must not be permitted on the same system.

    &lt;VulnDiscussion&gt;Allowing other operating systems to run on a secure system may allow security to be circumvented.&lt;/VulnDiscussion&gt;&lt;F...
    Rule Medium Severity
  • SRG-OS-000138-GPOS-00069

    <GroupDescription></GroupDescription>
    Group
  • Non-system-created file shares on a system must limit access to groups that require it.

    &lt;VulnDiscussion&gt;Shares which provide network access, must not exist on a workstation except for system-created administrative shares, and cou...
    Rule Medium Severity
  • SRG-OS-000468-GPOS-00212

    <GroupDescription></GroupDescription>
    Group
  • Unused accounts must be disabled or removed from the system after 35 days of inactivity.

    &lt;VulnDiscussion&gt;Outdated or unused accounts provide penetration points that may go undetected. Inactive accounts must be deleted if no longer...
    Rule Low Severity
  • SRG-OS-000312-GPOS-00123

    <GroupDescription></GroupDescription>
    Group
  • Software certificate installation files must be removed from Windows 11.

    &lt;VulnDiscussion&gt;Use of software certificates and their accompanying installation files for end users to access resources is less secure than ...
    Rule Medium Severity
  • Only accounts responsible for the administration of a system must have Administrator rights on the system.

    &lt;VulnDiscussion&gt;An account that does not have Administrator duties must not have Administrator rights. Such rights would allow the account to...
    Rule High Severity
  • SRG-OS-000480-GPOS-00227

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules