[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-47649-9

Platform: cpe:/o:microsoft:windows_server_2016Date: (C)2022-09-02   (M)2023-07-04



This policy setting lets you prevent apps and features from working with files on OneDrive. If you enable this policy setting: * Users can't access OneDrive from the OneDrive app and file picker. * Windows Store apps can't access OneDrive using the WinRT API. * OneDrive doesn't appear in the navigation pane in File Explorer. * OneDrive files aren't kept in sync with the cloud. * Users can't automatically upload photos and videos from the camera roll folder. If you disable or do not configure this policy setting, apps and features can work with OneDrive file storage. Countermeasure: Configure this setting depending on your organization's requirements. Potential Impact: Apps and features will be prevented from working with files on OneDrive. Fix: (1) GPO: Computer ConfigurationAdministrative TemplatesWindows ComponentsOneDrivePrevent the usage of OneDrive for file storage (2) REG: HKEY_LOCAL_MACHINESoftwarePoliciesMicrosoftWindowsOneDrive!DisableFileSyncNGSC


Parameter:

[enabled/disabled]


Technical Mechanism:

(1) GPO: Computer Configuration\Administrative Templates\Windows Components\OneDrive\Prevent the usage of OneDrive for file storage (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\OneDrive!DisableFileSyncNGSC

CCSS Severity:CCSS Metrics:
CCSS Score : 7.0Attack Vector: NETWORK
Exploit Score: 2.2Attack Complexity: HIGH
Impact Score: 4.7Privileges Required: NONE
Severity: HIGHUser Interaction: NONE
Vector: AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:LScope: UNCHANGED
 Confidentiality: HIGH
 Integrity: LOW
 Availability: LOW
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:83602


OVAL    1
oval:org.secpod.oval:def:83602
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_Server_2016

© SecPod Technologies