DISA STIG Microsoft Excel 2016 v1r1

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: DISA STIG Microsoft Excel 2016 v1r1

Updated: 12/1/2017

Authority: DISA STIG

Plugin: Windows

Revision: 1.3

Estimated Item Count: 42

Audit Items

DescriptionCategories
DTOO104 - Disabling of user name and password syntax from being used in URLs must be enforced.
DTOO105 - Open/Save actions for Excel 4 macrosheets and add-in files must be blocked.
DTOO106 - Open/Save actions for Excel 4 workbooks must be blocked.
DTOO107 - Open/Save actions for Excel 4 worksheets must be blocked.
DTOO108 - Actions for Excel 95 workbooks must be configured to edit in Protected View.
DTOO109 - Actions for Excel 95-97 workbooks and templates must be configured to edit in Protected View.
DTOO110 - Blocking as default file block opening behavior must be enforced.
DTOO111 - Enabling IE Bind to Object functionality must be present.
DTOO112 - Open/Save actions for Dif and Sylk files must be blocked.
DTOO113 - Open/Save actions for Excel 2 macrosheets and add-in files must be blocked.
DTOO114 - Open/Save actions for Excel 2 worksheets must be blocked.
DTOO115 - Open/Save actions for Excel 3 macrosheets and add-in files must be blocked.
DTOO116 - Open/Save actions for Excel 3 worksheets must be blocked.
DTOO117 - Saved from URL mark to assure Internet zone processing must be enforced.
DTOO119 - Configuration for file validation must be enforced.
DTOO120 - Open/Save actions for web pages and Excel 2003 XML spreadsheets must be blocked.
DTOO121 - Files from the Internet zone must be opened in Protected View.
DTOO122 - Open/Save actions for dBase III / IV files must be blocked.
DTOO123 - Navigation to URLs embedded in Office products must be blocked.
DTOO124 - Scripted Window Security must be enforced.
DTOO126 - Add-on Management functionality must be allowed.
DTOO127 - Add-ins to Office applications must be signed by a Trusted Publisher.
DTOO129 - Links that invoke instances of Internet Explorer from within an Office product must be blocked.
DTOO131 - Trust Bar Notifications for unsigned application add-ins must be blocked.
DTOO132 - File Downloads must be configured for proper restrictions.
DTOO133 - All automatic loading from trusted locations must be disabled.
DTOO134 - Disallowance of trusted locations on the network must be enforced.
DTOO139 - The Save commands default file format must be configured.
DTOO142 - The scanning of encrypted macros in open XML documents must be enforced.
DTOO145 - Macro storage must be in personal macro workbooks.
DTOO146 - Trust access for VBA must be disallowed.
DTOO209 - Protection from zone elevation must be enforced.
DTOO211 - ActiveX Installs must be configured for proper restriction.
DTOO288 - Files in unsafe locations must be opened in Protected View.
DTOO292 - Document behavior if file validation fails must be set - DisableEditFromPV
DTOO292 - Document behavior if file validation fails must be set - openinprotectedview
DTOO293 - Excel attachments opened from Outlook must be in Protected View.
DTOO304 - Warning Bar settings for VBA macros must be configured.
DTOO418 - WEBSERVICE functions must be disabled.
DTOO419 - Corrupt workbook options must be disallowed.
DTOO600 - Macros must be blocked from running in Office files from the Internet.
DTOO605 - Files on local Intranet UNC must be opened in Protected View.