Check: WN08-CC-000144
Windows 8/8.1 STIG:
WN08-CC-000144
(in versions v1 r23 through v1 r16)
Title
The option to update to the latest version of Windows from the Store must be turned off. (Cat II impact)
Discussion
Uncontrolled system updates can introduce issues into the environment. Updates to the latest version of Windows must be done through proper change management. This setting will prevent the option to update to the latest version of Windows from being offered through the Store.
Check Content
Verify the registry value below. If it does not exist or is not configured as specified, this is a finding. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \SOFTWARE\Policies\Microsoft\WindowsStore\ Value Name: DisableOSUpgrade Value Type: REG_DWORD Value: 1
Fix Text
Configure the policy value for Computer Configuration >> Administrative Templates >> Windows Components >> Store >> "Turn off the offer to update to the latest version of Windows" to "Enabled".
Additional Identifiers
Rule ID: SV-55997r3_rule
Vulnerability ID: V-43244
Group Title: WINCC-000144
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001812 |
The information system prohibits user installation of software without explicit privileged status. |
Controls
Number | Title |
---|---|
CM-11(2) |
Prohibit Installation Without Privileged Status |