Details
The ‘Office Feedback’ tool, also called ‘Send-a-Smile’, allows a user to click on an icon and send feedback to Microsoft. The ‘Office Feedback’ Tool must be configured to be disabled. In the event that the Office Feedback Tool has not been configured correctly as disabled, this policy configures whether the uploading of screenshots via the tool is allowed and should also be disabled. Uploading screenshots to a commercial vendor from a DoD computer may unintentionally reveal configuration and/or FOUO content.
Solution
Set the policy value for User Configuration -> Administrative Templates -> Microsoft Office 2013 -> Privacy -> Trust Center -> ‘Allow including screenshot with Office Feedback’ to ‘Disabled’.
Supportive Information
The following resource is also helpful.
This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Windows.
References
- 800-53|CM-6b.
- CAT|II
- CCI|CCI-000366
- Rule-ID|SV-228525r508020_rule
- STIG-ID|DTOO410
- STIG-Legacy|SV-53212
- STIG-Legacy|V-40880
- Vuln-ID|V-228525