Skip to content

Software certificate installation files must be removed from Windows Server 2016.

An XCCDF Rule

Description

Use of software certificates and their accompanying installation files for end users to access resources is less secure than the use of hardware-based certificates.

ID
SV-224842r991589_rule
Version
WN16-00-000270
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Remove any certificate installation files (*.p12 and *.pfx) found on a system.

Note: This does not apply to server-based applications that have a requirement for .p12 certificate files or Adobe PreFlight certificate files.