1. Home
  2. Security Hardening
  3. DISA STIG SharePoint 2013 V2R2
  4. SP13-00-000195 – SharePoint-specific malware (i.e. anti-virus) protection software must be integrated and configured – ‘Attempt to Clean Infected Documents is enabled’

SP13-00-000195 – SharePoint-specific malware (i.e. anti-virus) protection software must be integrated and configured – ‘Attempt to Clean Infected Documents is enabled’

Details

Configuring anti-virus settings ensures documents will be scanned for viruses upon download from and upload to the SharePoint server. Anti-virus settings are not configured by default, therefore leaving the documents downloaded from or uploaded to SharePoint open to potential viruses.

Solution

Configure and integrate SharePoint-specific malware (i.e. anti-virus) protection software on the SharePoint server.

Install and configure anti-virus package.

Install a SharePoint Server 2010-specific antivirus package.

Log in to Central Administration.

Navigate to Operations >> Security Configuration.

Select Anti-virus.

Check the following boxes:
– Scan documents on upload.
– Scan documents on download.
– Attempt to clean infected documents.

Select ‘OK’.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management, System and Communications Protection.This control applies to the following type of system Windows.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles