UCF STIG Viewer Logo

The system must be configured to prevent automatic forwarding of error information.


Overview

Finding ID Version Rule ID IA Controls Severity
V-3471 WN12-CC-000046 SV-52918r1_rule ECSC-1 Medium
Description
This setting controls the reporting of errors to Microsoft and, if defined, a corporate error reporting site. This does not interfere with the reporting of errors to the local user. Since the contents of memory are included in this error report, sensitive information may be transmitted to Microsoft. This feature must be disabled to prevent the release of such information.
STIG Date
Windows Server 2012 Domain Controller Security Technical Implementation Guide 2014-01-07

Details

Check Text ( C-47223r2_chk )
If the following registry value does not exist or is not configured as specified, this is a finding:

Registry Hive: HKEY_LOCAL_MACHINE
Registry Path: \Software\Policies\Microsoft\PCHealth\ErrorReporting\

Value Name: DoReport

Type: REG_DWORD
Value: 0

This setting may be enabled if the site has configured the option to send reports to a local error reporting server:
Computer Configuration -> Administrative Templates -> Windows Components -> Windows Error Reporting -> Advanced Error Reporting Settings -> "Configure Corporate Windows Error Reporting".
Fix Text (F-45844r1_fix)
Configure the policy value for Computer Configuration -> Administrative Templates -> System -> Internet Communication Management -> Internet Communication settings -> "Turn off Windows Error Reporting" to "Enabled".