3.051 - The Recycle Bin on a server must be configured to immediately delete files.

Information

The Recycle Bin saves a copy of a file when it is deleted. A deleted file may contain sensitive data, subjecting that data to potential exposure.

Solution

Configure the policy value for User Configuration -> Administrative Templates -> Windows Components -> Windows Explorer -> 'Do not move deleted files to the Recycle Bin' to 'Enabled'.

Or

Select 'Do not move files to the Recycle Bin. Remove files immediately when deleted.' for each volume in the Recycle Bin Properties.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2008_MS_V6R46_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CAT|III, CCI|CCI-000366, Rule-ID|SV-16948r2_rule, STIG-ID|3.051, Vuln-ID|V-1126

Plugin: Windows

Control ID: 22ec6191d71130fb84d2ea5e6e77c1c7e9334d9a2e88391cd945a79d7571aee4