Microsoft Windows 11
Indexing of encrypted files must be turned off
STIG ID:
WN11-CC-000305
|
SRG:
SRG-OS-000095-GPOS-00049
|
Severity:
Medium
|
CCI:
CCI-000381
|
Vulnerability ID:
V-253409
Description
Indexing of encrypted files may expose sensitive data. This setting prevents encrypted files from being indexed.
Check
C-56862r829309_chk
If the following registry value does not exist or is not configured as specified, this is a finding:Registry Hive: HKEY_LOCAL_MACHINERegistry Path: \SOFTWARE\Policies\Microsoft\Windows\Windows Search\Value Name: AllowIndexingEncryptedStoresOrItemsValue Type: REG_DWORDValue: 0
Fix
F-56812r829310_fix
Configure the policy value for Computer Configuration >> Administrative Templates >> Windows Components >> Search >> "Allow indexing of encrypted files" to "Disabled".