2.2.4.6.2 Ensure 'Disable AutoRepublish' is set to 'Enabled'

Information

This policy setting allows administrators to disable the AutoRepublish feature in Excel. If users choose to publish Excel data to a static Web page and enable the AutoRepublish feature, Excel saves a copy of the data to the Web page every time the user saves the workbook. By default, a message dialog displays every time the user saves a published workbook when AutoRepublish is enabled. From this dialog, the user can disable AutoRepublish temporarily or permanently, or select 'Do not show this message again' to prevent the dialog from appearing after every save. If the user selects 'Do not show this message again', Excel will continue to automatically republish the data after every save without informing the user.

The recommended state for this setting is: Enabled.

Rationale:

If users choose to publish Excel data to a static Web page and enable the AutoRepublish feature, Excel saves a copy of the data to the Web page every time the user saves the workbook. If the page is on a Web server, anyone who has access to the page will be able to see the updated data after every save, which can lead to the undesired disclosure of sensitive or incorrect information.

By default, a message dialog box displays every time the user saves a published workbook when AutoRepublish is enabled. From this dialog box, the user can disable AutoRepublish temporarily or permanently, or select 'Do not show this message again' to prevent the dialog box from appearing after every save. If the user selects 'Do not show this message again,' Excel will continue to automatically republish the data after every save without informing the user.

Impact:

If there is a critical business need to use the AutoRepublish feature, it might not be possible to enable this setting. However, in most situations users will be able to publish data to the Web manually.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled:

User Configuration\Administrative Templates\Microsoft Excel 2016\Excel Options\Save\Disable AutoRepublish

Default Value:

Disabled. (Users can enable AutoRepublish to automatically republish workbooks.)

See Also

https://workbench.cisecurity.org/benchmarks/12129

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(10)

Plugin: Windows

Control ID: ccecfb3ecbf896e82c6fdc627a67ba46a696a52d713345f350cca489dd502661