1.1.5.1.8 Set 'Windows Firewall: Domain: Logging: Log dropped packets' to 'Yes'

Information

Use this option to log when Windows Firewall with Advanced Security discards an inbound packet for any reason.

Solution

Make sure 'Windows Firewall: Domain: Logging: Log dropped packets' is set to the default value of Yes.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv6|6.2

Plugin: Windows

Control ID: f26c80b46f1448841e6242b7d793410e0f16eab7fb29ddfd36165ef56ad768cb