Check: WINER-000016
Windows Vista STIG:
WINER-000016
(in versions v6 r42 through v6 r41)
Title
The system must be configured to attempt to forward queued error reports once a day. (Cat II impact)
Discussion
Error reports stored in the queue should be forwarded to a local or DOD-wide collection site when the system can connect to the site. This setting controls the frequency a system will use to try forwarding queued reports to the local or DOD-wide collector.
Check Content
If the following registry value does not exist or is not configured as specified, this is a finding: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \SOFTWARE\Policies\Microsoft\Windows\Windows Error Reporting\ Value Name: QueuePesterInterval Type: REG_DWORD Value: 1
Fix Text
Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Windows Error Reporting -> Advanced Error Reporting Settings -> "Configure Report Queue" to "Enabled" with "Number of days between solution check reminders:" set to "1".
Additional Identifiers
Rule ID: SV-71953r1_rule
Vulnerability ID: V-57475
Group Title: WINER-000016
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001312 |
The information system generates error messages that provide information necessary for corrective actions without revealing information that could be exploited by adversaries. |
Controls
Number | Title |
---|---|
SI-11 |
Error Handling |