The OVAL Repository5.42015-09-03T06:34:21.938-04:00Verifies that SQL Server is running with a security CertificateMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This is intended to insure
that SQL Server has a security certicate.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies no Floppy Drives are installedMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This is intended to prevent
data being transfered off secured machines via floppy drives.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies there are no sharing of resourcesMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This is intended to prevent
data being transfered off secured machines via a share.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies that Anitvirus is installedMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This checks if an antivirus
is installed. NON-WMI Complaint products needs to be manually added as ORsKen LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies no USB Drives are installedMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2 This is intended to prevent
data being transfered off secured machines via USB (thumb) drives.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies that Firewall is installedMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This checks if a firewall
is installed. NON-WMI Complaint products needs to be manually added as ORsKen LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies there are no accounts that do not have expiring passwords or no passwordsMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This is intended to insure
that passwords are required and changed regularly.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies that Web Client Service is disabledMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This is intended to insure
that Web Client Service is disabled on appropriate machines, for example secured database
servers.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies no Infrared devices are installedMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This is intended to prevent
data being transfered off secured machines via infrared connections.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDVerifies no wireless adapters are installedMicrosoft Windows VistaMicrosoft Windows XPWorks on any Windows platform after Windows XP SP2. This is intended to prevent
data being transfered off secured machines via wireless connections.Ken LassesenDRAFTINTERIMACCEPTEDACCEPTEDNetBIOS Over TCP/IP is enabledMicrosoft Windows 2000NetBIOS** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A component service related to NETBIOS is running."Tiffany BergeronINTERIMACCEPTEDJonathan BakerINTERIMACCEPTEDJeff ChengINTERIMJeff ChengJeff ChengDragos PrisacaACCEPTEDNicholas HansenINTERIMACCEPTEDACCEPTEDMicrosoft Windows NT is installedMicrosoft Windows NTThe operating system installed on the system is Microsoft Windows NT.Andrew ButtnerACCEPTEDJonathan BakerINTERIMACCEPTEDJonathan BakerJeff ChengINTERIMACCEPTEDAndrew ButtnerINTERIMACCEPTEDTim HarrisonINTERIMACCEPTEDACCEPTEDroot\Microsoft\SqlServer\ComputerManagementSelect FriendlyName FROM SecurityCertificateroot\cimv2select Name from Win32_FloppyDriveroot\cimv2Select Name from Win32_Shareroot\SecurityCenterSELECT instanceGuid FROM AntiVirusProductroot\cimv2select Name from Win32_DiskDrive where InterfaceType='USB'root\SecurityCenterSELECT instanceGuid FROM FirewallProductroot\cimv2Select Name from Win32_UserAccount Where PasswordRequired = False OR PasswordExpires =
Falseroot\Microsoft\SqlServer\ComputerManagementSELECT Name FROM Win32_NetworkClient Where Name='Web Client Network' and
Status='OK'root\cimv2select Name from Win32_InfraredDeviceroot\cimv2Select Name from Win32_NetworkAdapter where Name LIKE '%Wireless%' or ProductName LIKE
'%Wireless%'HKEY_LOCAL_MACHINESOFTWARE\Microsoft\Windows NT\CurrentVersionCurrentVersionHKEY_LOCAL_MACHINESOFTWARE\Microsoft\Windows NT\CurrentVersionCurrentVersionHKEY_LOCAL_MACHINESYSTEM\CurrentControlSet\Services\NetBT\LinkageBindHKEY_LOCAL_MACHINESYSTEM\CurrentControlSet\Services\NetBT\LinkageExportHKEY_LOCAL_MACHINESYSTEM\CurrentControlSet\Services\NetBT\LinkageRoutewindows4.05.0000