Check: WINSV-000104
Windows 2008 Member Server STIG:
WINSV-000104
(in versions v6 r46 through v6 r35)
Title
The Simple TCP/IP Services service must be disabled if installed. (Cat II impact)
Discussion
Unnecessary services increase the attack surface of a system. Some of these services may not support required levels of authentication or encryption.
Check Content
Run "Services.msc". If "Simple TCP/IP Services" (Service name: simptcp) is installed and not disabled, this is a finding.
Fix Text
Remove or disable "Simple TCP/IP Services" (Service name: simptcp). To remove "Simple TCP/IP Services" from a system: Start "Server Manager" Select "Features" in the left pane. Under "Features Summary" in the right pane, select "Remove Features". On the "Features" screen, de-select "Simple TCP/IP Services". Click "Next" and "Remove".
Additional Identifiers
Rule ID: SV-83313r1_rule
Vulnerability ID: V-26605
Group Title: Simple TCP/IP Services Disabled
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |