Check: 5.027
Windows 2003 MS STIG:
5.027
(in version v6 r37)
Title
The system is configured to allow remote desktop sharing through NetMeeting. (Cat II impact)
Discussion
Remote desktop sharing enables several users to interact and control one desktop. This could allow unauthorized users to control the system. Remote desktop sharing should be disabled.
Check Content
If the following registry value doesn’t exist or its value is not set to 1, then this is a finding: Registry Hive: HKEY_LOCAL_MACHINE Subkey: \Software\Policies\Microsoft\Conferencing\ Value Name: NoRDS Type: REG_DWORD Value: 1
Fix Text
Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> NetMeeting “Disable remote Desktop Sharing” to “Enabled".
Additional Identifiers
Rule ID: SV-29275r1_rule
Vulnerability ID: V-3426
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |