2.11.8.7.4 Ensure 'Turn off file validation' is set to 'Disabled'

Information

This policy setting allows you turn off the file validation feature. Office Binary Documents (97-2003) are checked to see if they conform against the file format schema before they are opened.

The recommended state for this setting is: Disabled.

Rationale:

The file validation feature ensures that Office Binary Documents are checked to see if they conform against the file format schema before they are opened, which may help protect against certain types of attacks.

Impact:

None - this is the default behavior.

Solution

To establish the recommended configuration via GP, set the following UI path to Disabled.

User Configuration\Administrative Templates\Microsoft Word 2016\Word Options\Security\Turn off file validation

Default Value:

Disabled. (File validation will be turned on.)

See Also

https://workbench.cisecurity.org/benchmarks/12129

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-16

Plugin: Windows

Control ID: 404627c41ffabcaf050788faa58a5ed016d8ec4c825fad4cc73b1be929ad9f55