Check: 4.039
Windows Vista STIG:
4.039
(in versions v6 r42 through v6 r41)
Title
Built-in Admin Account Status (Cat II impact)
Discussion
This check verifies that Windows Vista is configured to disable the built-in administrator account which provides no accountability.
Check Content
Analyze the system using the Security Configuration and Analysis snap-in. Expand the Security Configuration and Analysis tree view. Navigate to Local Policies -> Security Options. If the value for “Accounts: Administrator account status” is not set to "Disabled”, then this is a finding.
Fix Text
Configure the system to disable the built-in administrator account.
Additional Identifiers
Rule ID: SV-17029r1_rule
Vulnerability ID: V-16047
Group Title: Built-in Admin Account Status
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000764 |
The information system uniquely identifies and authenticates organizational users (or processes acting on behalf of organizational users). |
Controls
Number | Title |
---|---|
IA-2 |
Identification And Authentication (Organizational Users) |