3.123 - Auditing Access of Global System Objects must be turned off.

Information

This setting prevents the system from setting up a default system access control list for certain system objects, which could create a very large number of security events, filling the security log in Windows and making it difficult to identify actual issues.

Solution

Configure the policy value for Computer Configuration -> Windows Settings -> Security Settings -> Local Policies -> Security Options -> 'Audit- Audit the access of global system objects' to 'Disabled'.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-5(2), CAT|II, CCE|CCE-3285-4, CCI|CCI-001095, Rule-ID|SV-29401r2_rule, STIG-ID|3.123, Vuln-ID|V-14228

Plugin: Windows

Control ID: 1e93b41853267919343131beeb877897441181db9de543f252a7b6409a29ae00