U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

USGCB Windows Vista 3.0.x.1 Checklist Details (Checklist Revisions)

SCAP 1.2 Content:

Supporting Resources:

Target:

Target CPE Name
Microsoft Windows Vista cpe:/o:microsoft:windows_vista (View CVEs)

Checklist Highlights

Checklist Name:
USGCB Windows Vista
Checklist ID:
158
Version:
3.0.x.1
Type:
Compliance
Review Status:
Final
Authority:
Governmental Authority: USGCB/TIS
Original Publication Date:
06/19/2008

Checklist Summary:

The purpose of the United States Government Configuration Baseline (USGCB) initiative is to create security configuration baselines for Information Technology products widely deployed across the federal agencies. The USGCB baseline evolved from the Federal Desktop Core Configuration mandate. The USGCB is a Federal government-wide initiative that provides guidance to agencies on what should be done to improve and maintain an effective configuration settings focusing primarily on security. This checklist represents the USGCB guidance for Microsoft Windows Vista.

Checklist Role:

  • Client Operating System

Known Issues:

Spreadsheet containing known issues can be found at http://usgcb.nist.gov/usgcb/microsoft_content.html, under the "Documentation" column.

Target Audience:

US Federal Agencies.

Target Operational Environment:

  • Managed

Testing Information:

Not provided.

Regulatory Compliance:

The recommendations are consistent with the security control baselines advocated in SP 800-53 (NIST FISMA implementation project publication).

Comments/Warnings/Miscellaneous:

Not provided.

Disclaimer:

Do not attempt to implement any of the settings without first testing them in a non-operational environment. These recommendations have only been tested on Windows 7 Ultimate 32-bit, Windows 7 Ultimate 64-bit, Windows 7 Enterprise x86, and Windows 7 Enterprise x64. These settings may be applicable to other Windows systems and service packs; however, NIST has not tested other Windows based systems with these settings. Please see the National Checklist Program (NCP) website for configuration guides related to other Windows Based systems and applications. The draft download packages contain recommended security settings; they are not meant to replace well-structured policy or sound judgment. Furthermore, these recommendations do not address site-specific configuration issues. Care must be taken when implementing these settings to address local operational and policy concerns. These recommendations were developed at the National Institute of Standards and Technology, which collaborated with DoD and Microsoft to produce the Windows 7, Windows 7 Firewall, Internet Explorer 8 USGCB. Pursuant to title 17 Section 105 of the United States Code, these recommendations are not subject to copyright protection and are in the public domain. NIST assumes no responsibility whatsoever for their use by other parties, and makes no guarantees, expressed or implied, about their quality, reliability, or any other characteristic. We would appreciate acknowledgement if the recommendations are used.

Product Support:

Not provided.

Point of Contact:

usgcb@nist.gov

Sponsor:

Not provided.

Licensing:

Not provided.

Change History:

04/24/2015 -  USGCB SCAP 1.2 content release

11/19/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated

10/22/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

09/20/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

08/30/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

07/31/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

06/25/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

05/29/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

04/29/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

03/21/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

02/23/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

01/22/2013 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

08/17/2012 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

07/30/2012 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

06/21/2012 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

05/21/2012 - USGCB OVAL 5.3 & 5.4 content and patch content updated.

05/15/2012 - USGCB OVAL 5.10 patch content 
updated.

04/23/2012 - USGCB OVAL 5.3 & 5.4 patch content updated. USGCB OVAL 5.10 patch content added.

03/22/2012 - USGCB OVAL 5.3 & 5.4 patch content updated.

02/23/2012 - USGCB OVAL 5.3 & 5.4 patch content updated.

01/23/2012 - USGCB OVAL 5.3 & 5.4 patch content updated.

11/14/2011 - USGCB OVAL 5.3 & 5.4 patch content updated.

11/10/2011 - USGCB GPOs updated.

10/17/2011 - Major Version 2.0 released

09/23/2011 - OVAL 5.3 & 5.4 Patch Content Updated

08/18/2011 - OVAL 5.3 & 5.4 Patch Content Updated

07/27/2011 - OVAL 5.3 & 5.4 Patch Content Updated

07/06/2011 - OVAL 5.3 & 5.4 Patch Content Updated

03/18/2011 - OVAL 5.3 & 5.4 Patch Content Updated

02/22/2011 - OVAL 5.3 & 5.4 Patch Content Updated

01/20/2011 - OVAL 5.3 & 5.4 Patch Content Updated

01/07/2011 - OVAL 5.3 & 5.4 Patch Content Updated

10/27/2010 - OVAL 5.3 & 5.4 Patch Content Updated

09/30/2010 - OVAL 5.3 & 5.4 Patch Content Updated

08/20/2010 - OVAL 5.3 & 5.4 Patch Content Updated

08/09/2010 - OVAL 5.3 & 5.4 Patch Content Updated

07/20/2010 - OVAL 5.3 & 5.4 Patch Content Updated

06/16/2010 - OVAL 5.3 & 5.4 Patch Content Updated

05/14/2010 - OVAL 5.3 & 5.4 Patch Content Updated

04/16/2010 - OVAL 5.3 & 5.4 Patch Content Updated

04/02/2010 - OVAL 5.3 & 5.4 Patch Content Updated

03/25/2010 - OVAL 5.3 & 5.4 Patch Content Updated

03/12/2010 - OVAL 5.3 & 5.4 Patch Content Updated

02/25/2010 - OVAL 5.3 & 5.4 Patch Content Updated

01/27/2010 - OVAL 5.3 & 5.4 Patch Content Updated

12/17/2009 - OVAL 5.3 & 5.4 Patch Content Updated

11/20/2009 - OVAL 5.3 & 5.4 Patch Content Updated

11/03/2009 - OVAL 5.3 & 5.4 Patch Content Updated

09/16/2009 - OVAL 5.3 & 5.4 Patch Content Updated

08/06/2009 - OVAL 5.3 & 5.4 Patch Content Updated

04/08/2009 - Major Version 1.2 released

10/31/2008 - Major Version 1.1.1.0 released

06/20/2008 - Major Version 1.0 released
23 January 2012 - USGCB major version 2.0.x.0 SCAP content posted.
Removed SCAP 1.0 Content - 26 January 2015
Updated Links to CRSC website - 03/30/2018

Dependency/Requirements:

URL Description
https://csrc.nist.gov/Projects/United-States-Government-Configuration-Baseline The link to the USGCB home page.
https://csrc.nist.gov/Projects/United-States-Government-Configuration-Baseline/USGCB-Content/Microsoft-Content USGCB Microsoft content download page
https://csrc.nist.gov/Projects/United-States-Government-Configuration-Baseline/USGCB-Content/Microsoft-Content/Windows-Vista USGCB individual file listings and download page
https://csrc.nist.gov/Projects/United-States-Government-Configuration-Baseline/faqs USGCB FAQ

References:

Reference URL Description

NIST checklist record last modified on 03/30/2018