Windows Server 2019 must not have the Microsoft FTP service installed unless required by the organization.
An XCCDF Rule
Description
<VulnDiscussion>Unnecessary services increase the attack surface of a system. Some of these services may not support required levels of authentication or encryption.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-205697r958480_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
Uninstall the "FTP Server" role.
Start "Server Manager".
Select the server with the role.