1. Home
  2. Security Hardening
  3. DISA STIG Microsoft Office System 2013 V2R1
  4. DTOO412 – The ability to run unsecure Office apps must be disabled.

DTOO412 – The ability to run unsecure Office apps must be disabled.

Details

Unsecure apps for Office, which are apps that have web page or catalog locations that are not SSL-secured (https://), and/or are not in users’ Internet zones may allow data to be transmitted/accessed via clear text to outside sources. By configuring this policy to be disabled, users will be prevented from transmitting/accessing data in a nonsecure manner.

Solution

Set the policy value for User Configuration >> Administrative Templates >> Microsoft Office 2013 >> Security Settings >> Trust Center >> Trusted Catalogs ‘Allow Unsecure Apps and Catalogs’ to ‘Disabled’.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Windows.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles