Windows Server 2022 must not have Simple TCP/IP Services installed.
Overview
Finding ID | Version | Rule ID | IA Controls | Severity |
V-254272 | WN22-00-000350 | SV-254272r958478_rule | Medium |
Description |
Unnecessary services increase the attack surface of a system. Some of these services may not support required levels of authentication or encryption or may provide unauthorized access to the system. |
STIG | Date |
Microsoft Windows Server 2022 Security Technical Implementation Guide | 2025-01-14 |
Details
Check Text (C-57757r848630_chk) |
Open "PowerShell". Enter "Get-WindowsFeature | Where Name -eq Simple-TCPIP". If "Installed State" is "Installed", this is a finding. An Installed State of "Available" or "Removed" is not a finding. |
Fix Text (F-57708r848631_fix) |
Uninstall the "Simple TCP/IP Services" feature. Start "Server Manager". Select the server with the feature. Scroll down to "ROLES AND FEATURES" in the right pane. Select "Remove Roles and Features" from the drop-down "TASKS" list. Select the appropriate server on the "Server Selection" page and click "Next". Deselect "Simple TCP/IP Services" on the "Features" page. Click "Next" and "Remove" as prompted. |