2.015 - File share ACLs have not been reconfigured to remove the Everyone group.

Information

By default, the Everyone group is given full control to new file shares. When a share is created, permissions should be reconfigured to give the minimum access to those accounts that require it.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Remove permissions from the Everyone group from locally-created file shares and assign them to authorized groups.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-4, CAT|II, CCI|CCI-001090, Rule-ID|SV-29212r1_rule, STIG-ID|2.015, Vuln-ID|V-3245

Plugin: Windows

Control ID: 58bb6325d0cba6fe23839d5d32d09d85c8012e8b21411195103274fcc0780b2b