Check: WN12-GE-000024
Microsoft Windows Server 2012/2012 R2 Domain Controller STIG:
WN12-GE-000024
(in versions v3 r7 through v2 r7)
Title
The system must support automated patch management tools to facilitate flaw remediation. (Cat II impact)
Discussion
The organization (including any contractor to the organization) must promptly install security-relevant software updates (e.g., patches, service packs, hot fixes). Flaws discovered during security assessments, continuous monitoring, incident response activities, or information system error handling must also be addressed.
Check Content
Verify the organization has an automated process to install security-related software updates. If it does not, this is a finding.
Fix Text
Establish a process to automatically install security-related software updates.
Additional Identifiers
Rule ID: SV-226255r794612_rule
Vulnerability ID: V-226255
Group Title: SRG-OS-000191-GPOS-00080
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
The organization implements the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |