Skip to content

Commit

Permalink
updated IISServer 10 V1R1 org settings file
Browse files Browse the repository at this point in the history
  • Loading branch information
bcwilhite committed Aug 5, 2020
1 parent cec587c commit 54d4e82
Show file tree
Hide file tree
Showing 2 changed files with 2 additions and 5 deletions.
5 changes: 1 addition & 4 deletions source/StigData/Processed/IISServer-10.0-1.1.org.default.xml
Original file line number Diff line number Diff line change
Expand Up @@ -5,7 +5,4 @@
Each setting in this file is linked by STIG ID and the valid range is in an
associated comment.
-->
<OrganizationalSettings fullversion="1.1">
<!-- Ensure ''V-100145.b'' -le '00:20:00'-->
<OrganizationalSetting id="V-100145.b" Value="00:20:00" />
</OrganizationalSettings>
<OrganizationalSettings fullversion="1.1" />
2 changes: 1 addition & 1 deletion source/StigData/Processed/IISServer-10.0-1.1.xml
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
<DISASTIG version="1" classification="UNCLASSIFIED" customname="" stigid="IIS_10-0_Server_STIG" description="This Security Technical Implementation Guide is published as a tool to improve the security of Department of Defense (DoD) information systems. The requirements are derived from the National Institute of Standards and Technology (NIST) 800-53 and related documents. Comments or proposed revisions to this document should be sent via email to the following address: disa.stig_spt@mail.mil." filename="U_MS_IIS_10-0_Server_V1R1_Manual-xccdf.xml" releaseinfo="Release: 1 Benchmark Date: 20 Mar 2020" title="Microsoft IIS 10.0 Server Security Technical Implementation Guide" notice="terms-of-use" source="STIG.DOD.MIL" fullversion="1.1" created="5/29/2020">
<DISASTIG version="1" classification="UNCLASSIFIED" customname="" stigid="IIS_10-0_Server_STIG" description="This Security Technical Implementation Guide is published as a tool to improve the security of Department of Defense (DoD) information systems. The requirements are derived from the National Institute of Standards and Technology (NIST) 800-53 and related documents. Comments or proposed revisions to this document should be sent via email to the following address: disa.stig_spt@mail.mil." filename="U_MS_IIS_10-0_Server_V1R1_Manual-xccdf.xml" releaseinfo="Release: 1 Benchmark Date: 20 Mar 2020" title="Microsoft IIS 10.0 Server Security Technical Implementation Guide" notice="terms-of-use" source="STIG.DOD.MIL" fullversion="1.1" created="8/5/2020">
<DocumentRule dscresourcemodule="None">
<Rule id="V-100103" severity="medium" conversionstatus="pass" title="SRG-APP-000015-WSR-000014" dscresource="None">
<Description>&lt;VulnDiscussion&gt;Logging onto a web server remotely using an unencrypted protocol or service when performing updates and maintenance is a major risk. Data, such as user account, is transmitted in plaintext and can easily be compromised. When performing remote administrative tasks, a protocol or service that encrypts the communication channel must be used.
Expand Down

0 comments on commit 54d4e82

Please sign in to comment.