Registry Paths

  • Thread starter Thread starter can2two
  • Start date Start date
C

can2two

# Center for Internet Security - CIS NG Scoring Tool - Windows XP SP2 -
SP2 Specialized Security Standalone

Have only the following registry paths that can be accessed from
another computer been configured on this system?
System\CurrentControlSet\Control\ProductOptions;
System\CurrentControlSet\Control\Server Applications;
Software\Microsoft\WindowsNT\CurrentVersion (This setting can be
checked via a registry editor to look at
SYSTEM\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedExactPaths\Machine).

In addition to the above my system contains the following:
System\CurrentControlSet\Control\Print\Printers
System\CurrentControlSet\Services\Eventlog
Software\Microsoft\OLAP Server
System\CurrentControlSet\Control\ContentIndex
System\CurrentControlSet\Control\Terminal Server
System\CurrentControlSet\Control\Terminal Server\UserConfig
System\CurrentControlSet\Control\Terminal
Server\DefaultUserConfiguration

Should these additional values be removed ?
 
Is your computer for use in the defense, national intelligence
establishments, or other ultra-sensitive environment? If not, the specialized
security standalone template is NOT for you and you should not use it. It
will severely limit what your computer can do.

None of those registry keys provide particularly sensitive information. It
is quite safe to leave them alone unless your computer is destined for use in
an environment where people will die, large amounts of money (billions) will
be lost, or nation states will fall if your computer is compromised.
 
Back
Top