Check: WINER-000110
Windows 2003 DC STIG:
WINER-000110
(in version v6 r40)
Title
The system must be configured to collect operating system kernel errors. (Cat II impact)
Discussion
Windows Error Reporting information can be used to help diagnose day-to-day software issues, as well as help discover malicious code and possibly zero-day attacks on systems. This setting includes the creation of report errors pertaining solely to the Windows operating system.
Check Content
Fix Text
Configure the policy value for Computer Configuration -> Administrative Templates -> System -> Error Reporting -> Advanced Error Reporting settings -> "Report operating system errors" to "Enabled".
Additional Identifiers
Rule ID: SV-70827r1_rule
Vulnerability ID: V-56567
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001312 |
Generate error messages that provide information necessary for corrective actions without revealing information that could be exploited. |
Controls
Number | Title |
---|---|
SI-11 |
Error Handling |