UCF STIG Viewer Logo

The system must be configured to store error reports locally, on the system or in the enclave, not send them to Microsoft.


Overview

Finding ID Version Rule ID IA Controls Severity
V-56515 WINER-000100 SV-70775r1_rule ECSC-1 Medium
Description
Forwarding error reports to vendors could expose sensitive information. This setting controls the configuration of a local or DOD-wide error reporting site. In order to not send the data to any system at this time, yet create the reports locally on the system, this value needs to be a single blank character. To forward error reports to a collection server, the site's error reporting server name or IP address must be defined.
STIG Date
Windows 2003 Member Server Security Technical Implementation Guide 2015-03-09

Details

Check Text ( C-57077r1_chk )
If the following registry value does not exist or is not configured as specified, this is a finding:

Registry Hive: HKEY_LOCAL_MACHINE
Registry Path: \SOFTWARE\Policies\Microsoft\PCHealth\ErrorReporting\DW\

Value Name: DWFileTreeRoot

Type: REG_SZ
Value: "" (Blank or the path to a local collector)
Fix Text (F-61403r1_fix)
Configure the policy value for Computer Configuration -> Administrative Templates -> System -> Error Reporting -> "Configure Error Reporting" to "Enabled" with "Corporate upload file path:" left blank (or with the path to a local collector entered - e.g. \\10.1.1.1\path).