UCF STIG Viewer Logo

Unnecessary Windows Server 2008 Features must not be installed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-16006 5.260 SV-16958r2_rule ECSC-1 Medium
Description
Windows Server 2008 includes additional features available for installation through Server Manager. The majority of these are unnecessary for the server roles and may also increase the attack surface of the system.
STIG Date
Windows 2008 Member Server Security Technical Implementation Guide 2015-03-09

Details

Check Text ( C-16647r3_chk )
Start "Server Manager" under Administrative Tools.
Select the "Features" node.
View Features Summary to determine any installed features.
The "Add Features" link provides a complete list of available Features.

Any installed Features must be documented with the IAO to include the reason for installation and any mitigations of risk.

Current Exceptions: Group Policy Management, Windows Server Backup Features, Bitlocker.

If any unnecessary, undocumented Features are installed, this is a finding.
Fix Text (F-16029r1_fix)
Uninstall any unnecessary, undocumented Features.