Check: WN08-GE-000021
Windows 8/8.1 STIG:
WN08-GE-000021
(in versions v1 r23 through v1 r16)
Title
Hyper-V must not be installed on a workstation. (Cat II impact)
Discussion
Allowing other operating systems to run on a secure system may allow users to circumvent security.
Check Content
Verify the Hyper-V platform has not been installed on the system. Open Control Panel. Select "Programs and Features". Select "Turn Windows features on or off". If "Hyper-V Platform" is selected, this is a finding. (Hyper-V Platform is a subcategory under Hyper-V) If Hyper-V is installed on a workstation, the organization must have an approved use case for it. Any virtual OS's must be secured. This would not be a finding.
Fix Text
Uninstall the Hyper-V platform through "Turn Windows Features on or off".
Additional Identifiers
Rule ID: SV-48376r3_rule
Vulnerability ID: V-36727
Group Title: WN08-GE-000021
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |