Skip to content

I - Mission Critical Classified

Rules and Groups employed by this XCCDF Profile

  • DTOO146-Disable Trust access to VB Project Macros

    <GroupDescription></GroupDescription>
    Group
  • Trust access for VBA must be disallowed.

    &lt;VulnDiscussion&gt;VSTO projects require access to the Visual Basic for Applications project system in Excel, PowerPoint, and Word, even though ...
    Rule Medium Severity
  • DTOO304 - VBA Macro Warning settings

    <GroupDescription></GroupDescription>
    Group
  • Warning Bar settings for VBA macros must be configured.

    &lt;VulnDiscussion&gt;When users open files containing VBA Macros, applications open the files with the macros disabled and displays the Trust Bar ...
    Rule Medium Severity
  • DTOO302 - Don't update Links at Open

    <GroupDescription></GroupDescription>
    Group
  • The automatically update links feature must be configured as off.

    &lt;VulnDiscussion&gt;When users open documents Word automatically updates any links to external content, such as graphics, Excel worksheets, and P...
    Rule Medium Severity
  • DTOO303 - Warn before printing

    <GroupDescription></GroupDescription>
    Group
  • A warning before printing that the document contains tracking changes must be provided.

    &lt;VulnDiscussion&gt;Tracked changes or comments embedded within a document may contain sensitive, insulting, or embarrassing information that the...
    Rule Medium Severity
  • DTOO126 - Add-on Management

    <GroupDescription></GroupDescription>
    Group
  • Add-on Management functionality must be allowed.

    &lt;VulnDiscussion&gt;Internet Explorer add-ons are pieces of code, run in Internet Explorer, to provide additional functionality. Rogue add-ons ma...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules