Perform volume maintenance tasksID: oval:org.secpod.oval:def:36552 | Date: (C)2016-08-05 (M)2023-12-13 |
Class: COMPLIANCE | Family: windows |
This security setting determines which users and groups can run maintenance tasks on a volume, such as remote defragmentation.
Use caution when assigning this user right. Users with this user right can explore disks and extend files in to memory that contains other data. When the extended files are opened, the user might be able to read and modify the acquired data.
Default: Administrators
Counter Measure:
Ensure that only the local Administrators group is assigned the Perform volume maintenance tasks user right.
Potential Impact:
None. This is the default configuration.
Fix:
(1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\User Rights Assignment\Perform volume maintenance tasks
(2) REG: ###
(3) WMI: root\rsop\computer#RSOP_UserPrivilegeRight#AccountList#UserRight='SeManageVolumePrivilege' and precedence=1
Platform: |
Microsoft Windows 10 |