III - Administrative Sensitive
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000516
Group -
Smart Documents use of Manifests in Office must be disallowed.
This policy setting controls whether Office 2016 applications can load an XML expansion pack manifest file with a Smart Document. An XML expansion pack is the group of files that constitutes a Smar...Rule Medium Severity -
SRG-APP-000340
Group -
Connection verification of permissions must be enforced.
This policy setting controls whether users are required to connect to the Internet or a local network to have their licenses confirmed every time they attempt to open Excel workbooks, InfoPath form...Rule Medium Severity -
SRG-APP-000516
Group -
Inclusion of document properties for PDF and XPS output must be disallowed.
This policy setting controls whether document metadata can be saved in PDF and XPS documents. If you enable this policy setting, document properties metadata is not exported to PDF and XPS files. I...Rule Medium Severity -
SRG-APP-000429
Group -
Encrypt document properties must be configured for OLE documents.
This policy setting allows you configure if the document properties are encrypted. This applies to OLE documents (Office 97-2003 compatible) if the application is configured for CAPI RC4. If you e...Rule Medium Severity -
SRG-APP-000141
Group -
Office Presentation Service must be removed as an option for presenting PowerPoint and Word online.
This policy setting allows you to remove Office Presentation Service from the list of online presentation services in PowerPoint and Word. This list appears when a user selects Present Online from ...Rule Medium Severity -
SRG-APP-000210
Group -
The ability to create an online presentation programmatically must be disabled.
This policy setting allows you to restrict the ability to create an online presentation programmatically in PowerPoint and Word. If you enable this policy setting, an online presentation cannot be ...Rule Medium Severity -
SRG-APP-000516
Group -
When using the Office Feedback tool, the ability to include a screenshot must be disabled.
This policy setting manages whether the Office Feedback Tool (a.k.a. Send a Smile) allows the user to send a screenshot of their desktop with their feedback to Microsoft. The Office Feedback Tool a...Rule Medium Severity -
SRG-APP-000516
Group -
The ability to run unsecure Office web add-ins and Catalogs must be disabled.
This policy setting allows users to run unsecure web add-in, which are add-ins that have web page or catalog locations that are not SSL-secured (https://), and are not in users' Internet zones. If ...Rule Medium Severity -
SRG-APP-000516
Group -
The Office Telemetry Agent must be configured to obfuscate the file name, file path, and title of Office documents before uploading telemetry data to the shared folder.
This policy setting configures Office Telemetry Agent to disguise, or obfuscate, certain file properties that are reported in telemetry data. If this policy setting is enabled, Office Telemetry Age...Rule Medium Severity -
SRG-APP-000516
Group -
The ability to send personal information to Office must be disabled.
This policy setting controls whether users can send personal information to Office. When users choose to send information Office 2016 applications automatically send information to Office. If you e...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.