CIS Microsoft Windows Server 2016 STIG MS L1 v1.1.0

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: CIS Microsoft Windows Server 2016 STIG MS L1 v1.1.0

Updated: 7/10/2024

Authority: CIS

Plugin: Windows

Revision: 1.14

Estimated Item Count: 294

File Details

Filename: CIS_Microsoft_Windows_Server_2016_STIG_v1.1.0_L1_MS.audit

Size: 727 kB

MD5: 1bb445666e1f808f0e246d9fa62b2061
SHA256: 3b21d4f4e931ca5ce5691c7244880f608b7c3f7a22a5f78fe06079309ad988b1

Audit Changelog

 
Revision 1.14

Jul 10, 2024

Miscellaneous
  • Audit deprecated.
  • Metadata updated.
  • References updated.
Revision 1.13

Jun 17, 2024

Miscellaneous
  • Metadata updated.
Revision 1.12

May 13, 2024

Functional Update
  • 2.2.18 Ensure 'Create symbolic links' is set to 'Administrators, NT VIRTUAL MACHINE\Virtual Machines' (MS only)
Miscellaneous
  • Metadata updated.
Revision 1.11

Dec 4, 2023

Functional Update
  • 18.9.103.1.1 Ensure 'Manage preview builds' is set to 'Enabled: Disable preview builds' - Disable preview builds
Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.10

Apr 12, 2023

Functional Update
  • 1.1.1 Ensure 'Enforce password history' is set to '24 or more password(s)'
  • 1.1.3 Ensure 'Maximum password age' is set to '365 or fewer days, but not 0'
  • 1.1.4 Ensure 'Minimum password age' is set to '1 or more day(s)'
  • 1.1.5 Ensure 'Minimum password length' is set to '14 or more character(s)'
Miscellaneous
  • Metadata updated.
  • Platform check updated.
  • Variables updated.
Revision 1.9

Mar 21, 2023

Functional Update
  • 18.8.3.2 Ensure 'Include command line in process creation events' is set to 'Disabled'
Revision 1.8

Mar 8, 2023

Functional Update
  • 18.9.30.4 Ensure 'Turn off shell protocol protected mode' is set to 'Disabled'
  • 18.9.63.3.9.2 Ensure 'Require secure RPC communication' is set to 'Enabled'
  • 2.3.1.5 Ensure 'Accounts: Limit local account use of blank passwords to console logon only' is set to 'Enabled'
  • 2.3.11.7 Ensure 'Network security: LAN Manager authentication level' is set to 'Send NTLMv2 response only. Refuse LM & NTLM'
Revision 1.7

Mar 7, 2023

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.6

Jan 4, 2023

Miscellaneous
  • Metadata updated.
Revision 1.5

Dec 7, 2022

Miscellaneous
  • Variables updated.