Check: 5.201
Windows Vista STIG:
5.201
(in versions v6 r42 through v6 r41)
Title
Network – Responder Driver (Cat II impact)
Discussion
This check verifies that the Responder network protocol driver is disabled.
Check Content
If the following registry values don’t exist or are not configured as specified, this is a finding: Registry Hive: HKEY_LOCAL_MACHINE Subkey: \Software\Policies\Microsoft\Windows\LLTD\ Value Name: AllowRspndrOndomain Value Name: AllowRspndrOnPublicNet Value Name: EnableRspndr Value Name: ProhibitRspndrOnPrivateNet Type: REG_DWORD Value: 0
Fix Text
Configure the policy value for Computer Configuration -> Administrative Templates -> Network -> Link-Layer Topology Discovery “Turn on Responder (RSPNDR) driver” to “Disabled”.
Additional Identifiers
Rule ID: SV-16636r1_rule
Vulnerability ID: V-15697
Group Title: Network – Responder Driver
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
The organization configures the information system to provide only essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |