2.4 Worker Process Identities - 'AppPoolIdentityType = SYSTEM,LOCAL SERVICE,NETWORK SERVICE, or SPECIFIC USER'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Applications that use worker process identities have a reduced attack surface when an application has been compromised because they have a limited set of privileges and permissions.

Solution

Make sure 'Worker Process Identities' is set to SYSTEM,LOCAL SERVICE,NETWORK SERVICE, or SPECIFIC USER

See Also

https://workbench.cisecurity.org/files/657

Item Details

Audit Name: CIS IIS 6.0 v1.0.0

Category: ACCESS CONTROL

References: 800-53|AC-6, CCE|CCE-19840-8

Plugin: Windows

Control ID: f15b008a62768c57b736d900f07d889419330d81da4a665c7e3df6594204576b