[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244625

 
 

909

 
 

193379

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

Default behavior for AutoRun

ID: oval:org.secpod.oval:def:8877Date: (C)2013-01-21   (M)2023-05-09
Class: COMPLIANCEFamily: windows




The Default behavior for AutoRun machine setting should be configured correctly. Sets the default behavior for Autorun commands. Autorun commands are generally stored in autorun.inf files. They often launch the installation program or other routines. Prior to Windows Vista, when media containing an autorun command is inserted, the system will automatically execute the program without user intervention. This creates a major security concern as code may be executed without user's knowledge. The default behavior in Windows Vista is to prompt the user whether autorun command is to be run. The autorun command is represented as a handler in the Autoplay dialog. If you enable this policy, an Administrator can change the default Windows Vista behavior for autorun to: A) Completely disable autorun commands, or B) Revert back to Pre-Windows Vista behavior of automatically executing the autorun command. If you disable or not configure this policy, Windows Vista will prompt the user whether autorun command is to be run. Fix: (1) GPO: Computer Configuration\Administrative Templates\Windows Components\AutoPlay Policies\Default behavior for AutoRun (2) KEY: HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoAutorun

Platform:
Microsoft Windows Server 2008 R2
Reference:
CCE-11431-4
CPE    1
cpe:/o:microsoft:windows_server_2008:r2
CCE    1
CCE-11431-4
XCCDF    6
xccdf_org.secpod_benchmark_NIST_800_53_r4_Windows_2008_R2
xccdf_org.secpod_benchmark_HIPAA_45CFR_164_Windows_Server_2008_R2
xccdf_org.secpod_benchmark_SecPod_Windows_Server_2008_R2
xccdf_org.secpod_benchmark_general_Windows_Server_2008_R2
...

© SecPod Technologies