Check: 3.082
Windows 2008 Domain Controller STIG:
3.082
(in versions v6 r47 through v6 r35)
Title
The system is configured to allow unsolicited remote assistance offers. (Cat II impact)
Discussion
This setting controls whether unsolicited offers of help to this computer are allowed. The list of users allowed to offer remote assistance to this system is accessed by pressing the Helpers button.
Check Content
If the following registry value doesn’t exist or is not configured as specified this is a finding: Registry Hive: HKEY_LOCAL_MACHINE Subkey: \Software\Policies\Microsoft\Windows NT\Terminal Services\ Value Name: fAllowUnsolicited Type: REG_DWORD Value: 0
Fix Text
Configure the system to prevent unsolicited remote assistance offers by setting the policy value for Computer Configuration -> Administrative Templates -> System -> Remote Assistance “Offer Remote Assistance” to “Disabled”.
Additional Identifiers
Rule ID: SV-29283r1_rule
Vulnerability ID: V-3470
Group Title: Remote Assistance - Offer Remote Assistance
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001090 |
Prevent unauthorized and unintended information transfer via shared system resources. |
Controls
Number | Title |
---|---|
SC-4 |
Information in Shared Resources |