Skip to content

Zone information must be preserved when saving attachments.

An XCCDF Rule

Description

Preserving zone of origin (internet, intranet, local, restricted) information on file attachments allows Windows to determine risk.

ID
SV-253478r991589_rule
Version
WN11-UC-000020
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

The default behavior is for Windows to mark file attachments with their zone information.

To correct this, configure the policy value for User Configuration >> Administrative Templates >> Windows Components >> Attachment Manager >> "Do not preserve zone information in file attachments" to "Not Configured" or "Disabled".