Skip to content

I - Mission Critical Sensitive

Rules and Groups employed by this XCCDF Profile

  • DTOO304 - VBA Macro Warning settings

    Group
  • Warning Bar settings for VBA macros must be configured.

    When users open files containing VBA macros, applications open the files with the macros disabled and display the Trust Bar with a warning that macros are present and have been disabled. Users may ...
    Rule Medium Severity
  • DTOO302 - Don't update Links at Open

    Group
  • The automatically update links feature must be disabled.

    When users open documents Word automatically updates any links to external content, such as graphics, Excel worksheets, and PowerPoint slides. To disable automatic updating, the user can click the ...
    Rule Medium Severity
  • DTOO303 - Warn before printing

    Group
  • A warning before printing that the document contains tracking changes must be provided.

    Tracked changes or comments embedded within a document may contain sensitive, insulting, or embarrassing information that the document owner forgot, or that a contributor may have inserted.
    Rule Medium Severity
  • DTOO126 - Add-on Management

    Group
  • Add-on Management functionality must be allowed.

    Internet Explorer add-ons are pieces of code, run in Internet Explorer, to provide additional functionality. Rogue add-ons may contain viruses or other malicious code. Disabling or not configuring ...
    Rule Medium Severity
  • DTOO209 - Zone Elevation Protection

    Group
  • Protection from zone elevation must be enforced.

    Internet Explorer places restrictions on each web page users can use the browser to open. Web pages on a user's local computer have the fewest security restrictions and reside in the Local Machine ...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules