5.240 - Windows Explorer - Shell Protocol Protected Mode

Information

This check verifies that the shell protocol is run in protected mode. (This allows applications to only open limited folders.)

Solution

Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Windows Explorer 'Turn off shell protocol protected mode' to 'Disabled'.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-29452r1_rule, STIG-ID|5.240, Vuln-ID|V-15683

Plugin: Windows

Control ID: 0c7e07bf0bfe079259d3c7ddca63601f510513a868756e5444cfc1c45e402c29