2.3.8.1 Ensure 'Document Information Panel Beaconing UI' is set to 'Enabled: Always show UI'

Information

This policy setting controls whether users see a security warning when they open custom Document Information Panels that contain a Web beaconing threat. InfoPath can be used to create custom Document Information Panels that can be attached to Excel workbooks, PowerPoint presentations, and Word documents.

The recommended state for this setting is: Enabled: Always show UI.

Rationale:

InfoPath can be used to create custom Document Information Panels that can be attached to Excel workbooks, PowerPoint presentations, and Word documents.

A malicious user could insert a Web beacon into an InfoPath form that is used to create a custom Document Information Panel. Web beacons can be used to contact an external server when users open the form. Information could be gathered by the form, or information entered by users could be sent to an external server and cause them to be vulnerable to additional attacks.

Impact:

Enabling this setting and selecting 'Always show UI' from the drop-down menu can cause some disruptions for users who often open documents containing custom Document Information Panels.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled: Always show UI:

User Configuration\Administrative Templates\Microsoft Office 2016\Document Information Panel\Document Information Panel Beaconing UI

Default Value:

Disabled. (Equivalent of Never show UI being set.)

See Also

https://workbench.cisecurity.org/benchmarks/12129

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Windows

Control ID: 5c114c63e068453f6f247b9b7223133b3c7f0aad7bc993c6f909c813380bf0e6