Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • Windows Server 2019 Active Directory Domain Controllers Organizational Unit (OU) object must have the proper access control permissions.

    <VulnDiscussion>When Active Directory objects do not have appropriate access control permissions, it may be possible for malicious users to c...
    Rule High Severity
  • SRG-OS-000324-GPOS-00125

    <GroupDescription></GroupDescription>
    Group
  • Windows Server 2019 organization created Active Directory Organizational Unit (OU) objects must have proper access control permissions.

    &lt;VulnDiscussion&gt;When directory service database objects do not have appropriate access control permissions, it may be possible for malicious ...
    Rule High Severity
  • SRG-OS-000324-GPOS-00125

    <GroupDescription></GroupDescription>
    Group
  • Windows Server 2019 Add workstations to domain user right must only be assigned to the Administrators group on domain controllers.

    &lt;VulnDiscussion&gt;Inappropriate granting of user rights can provide system, administrative, and other high-level capabilities. Accounts with t...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules