Skip to content

Microsoft Windows 11 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-OS-000073-GPOS-00041

    Group
  • SRG-OS-000125-GPOS-00065

    Group
  • The Windows Remote Management (WinRM) client must not use Digest authentication.

    Digest authentication is not as strong as other options and may be subject to man-in-the-middle attacks.
    Rule Medium Severity
  • SRG-OS-000028-GPOS-00009

    Group
  • Windows 11 systems must have Unified Extensible Firmware Interface (UEFI) firmware and be configured to run in UEFI mode, not Legacy BIOS.

    UEFI provides additional security features in comparison to legacy BIOS firmware, including Secure Boot. UEFI is required to support additional security features in Windows 11, including virtualiza...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules