DISA STIG Office 2010 InfoPath v1r5

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: DISA STIG Office 2010 InfoPath v1r5

Updated: 10/27/2021

Authority: DISA STIG

Plugin: Windows

Revision: 1.18

Estimated Item Count: 26

File Details

Filename: DISA_STIG_MS_Office_InfoPath_2010.audit

Size: 29.5 kB

MD5: 1977e969e0b4870e6440332f9f981256
SHA256: 43ba247317a3d6ebcc34fb030bb6294db92c93b2e42002d243be377380fb0365

Audit Items

DescriptionCategories
DISA_STIG_MS_Office_InfoPath_2010.audit for MS InfoPath, from DISA Office 2010 STIG, v1r5 10.26.2012
DTOO127 - Application add-ins must be signed by Trusted Publisher.

SYSTEM AND INFORMATION INTEGRITY

DTOO128 - Data Execution Prevention must be enforced.

CONFIGURATION MANAGEMENT

DTOO131 - Trust Bar Notifications for unsigned application add-ins must be blocked.

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO133 - All automatic loading from Trusted Locations must be disabled.

CONFIGURATION MANAGEMENT

DTOO156 - Offline Mode capability to cache queries for offline mode must be configured.

CONFIGURATION MANAGEMENT

DTOO157 - Redirection behavior for upgraded web sites by SharePoint must be blocked.

CONFIGURATION MANAGEMENT

DTOO158 - Disabling the opening of solutions from the Internet Security Zone must be configured.

CONFIGURATION MANAGEMENT

DTOO159 - Disabling of Fully Trusted Solutions access to computers must be configured.

CONFIGURATION MANAGEMENT

DTOO160 - Unsafe file types must be prevented from being attached to InfoPath forms.

SYSTEM AND INFORMATION INTEGRITY

DTOO164 - Beaconing UI shown for opened forms must be configured.

CONFIGURATION MANAGEMENT

DTOO165 - Beaconing of UI forms with ActiveX controls must be enforced.

CONFIGURATION MANAGEMENT

DTOO167 - Opening behavior for EMail forms containing code or scripts must be controlled.

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO168 - Disabling sending form templates with the email forms must be configured.

CONFIGURATION MANAGEMENT

DTOO169 - Dynamic caching of InfoPath eMail forms must be disabled.

CONFIGURATION MANAGEMENT

DTOO170 - InfoPath 2003 forms as email forms in InfoPath 2010 must be disallowed.

CONFIGURATION MANAGEMENT

DTOO171 - Disabling email forms running in Restricted Security Level must be configured.

CONFIGURATION MANAGEMENT

DTOO172 - Disabling email forms from the Internet Security Zone must be configured.

CONFIGURATION MANAGEMENT

DTOO173 - Disabling of email forms from the Full Trust Security Zone must be configured.

CONFIGURATION MANAGEMENT

DTOO176 - Email with InfoPath forms must be configured to show UI to recipients.

CONFIGURATION MANAGEMENT

DTOO294 - InfoPath must be enforced to not use e-mail forms from the Intranet security zone.

CONFIGURATION MANAGEMENT

DTOO295 - InfoPath e-mail forms in Outlook must be disallowed.

CONFIGURATION MANAGEMENT

DTOO296 - Disabling opening forms with managed code from the Internet security zone must be configured.

CONFIGURATION MANAGEMENT

DTOO297 - A form that is digitally signed must be displayed with a warning.

SYSTEM AND INFORMATION INTEGRITY

DTOO305 - Disable UI extending from documents and templates must be disallowed.

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO309 - The InfoPath APTCA Assembly Allowable List must be enforced.

CONFIGURATION MANAGEMENT