19.07.2013 Views

ACTIVE DIRECTORY SECURITY CHECKLIST ... - Leet Upload

ACTIVE DIRECTORY SECURITY CHECKLIST ... - Leet Upload

ACTIVE DIRECTORY SECURITY CHECKLIST ... - Leet Upload

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Active Directory Checklist, V1R1.2 Field Security Operations<br />

22 September 2006 Defense Information Systems Agency<br />

DS05.0190 Synch\Maint Public Domain Software<br />

STIG ID \ V-Key DS05.0190 \ V0011785<br />

Severity Cat II<br />

Short Name Synch\Maint Public Domain Software<br />

IA Controls DCPD-1<br />

MAC /Conf 1-CSP, 2-CSP, 3-CSP<br />

References AD STIG 2.3.1.4<br />

Long Name: Public domain software is used to perform directory synchronization or<br />

maintenance operations.<br />

Checks:<br />

• Search for instances of known public domain software:<br />

- Start Windows Explorer.<br />

- Right-click the “My Computer” item and select “Search…”<br />

- For each of the following program names:<br />

adfind.exe, admod.exe, shedit.exe, and shedit2k3.exe<br />

-- Enter the program name in the file name field.<br />

-- Select “Local Hard Drives” in the “Look in:” field.<br />

-- Click the Search button.<br />

• Ask the SA or application SA to confirm that no other public domain software is<br />

being used to perform synchronization or maintenance operations.<br />

• If instances of public domain software are installed and this software has not been<br />

assessed for information assurance impacts and approved explicitly by the DAA,<br />

then this is a Finding.<br />

Note: This check and the associated requirement are based on DoD policy on the use<br />

of software for which original source code is not available *and* there is limited or<br />

no warranty or support. In these circumstances, the inability to examine or review<br />

potential vulnerabilities represents an unknown and unacceptable risk.<br />

UNCLASSIFIED<br />

5-34

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!