WN12-CC-000002 - The Responder network protocol driver must be disabled

Information

The Responder network protocol driver allows a computer to be discovered and located on a network. Disabling this helps protect the system from potentially being discovered and connected to by unauthorized devices.

Solution

Configure the policy value for Computer Configuration -> Administrative Templates -> Network -> Link-Layer Topology Discovery -> 'Turn on Responder (RSPNDR) driver' to 'Disabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2012_and_2012_R2_DC_V3R7_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-226136r794412_rule, STIG-ID|WN12-CC-000002, STIG-Legacy|SV-53081, STIG-Legacy|V-15697, Vuln-ID|V-226136

Plugin: Windows

Control ID: 4316b58918cf1029c138201c23f09c8ff6bbbc2476060757b1e3dad43c325c10