From 067405ac3b0e8fb41ce44ef36a97fdf17a7bf238 Mon Sep 17 00:00:00 2001 From: Vinay Pamnani <37223378+vinaypamnani-msft@users.noreply.github.com> Date: Wed, 7 Jun 2023 11:07:08 -0400 Subject: [PATCH] Refresh1 --- .../threat-protection/images/community.png | Bin 25079 -> 0 bytes .../applocker/applocker-overview.md | 26 ++---- .../get-support-for-security-baselines.md | 52 +++++------ .../security-compliance-toolkit-10.md | 87 ++++++++---------- .../windows-security-baselines.md | 9 +- 5 files changed, 72 insertions(+), 102 deletions(-) delete mode 100644 windows/security/threat-protection/images/community.png diff --git a/windows/security/threat-protection/images/community.png b/windows/security/threat-protection/images/community.png deleted file mode 100644 index 8d99720c6effdb42989a50fec4d14234f4c326ab..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 25079 zcmbTec|6qn_Xln_B!(s?O$>! z5W&C2-XqVze<*Bav>gZtsGE=fA&k39eIA}9ca&9-BA=i{67#WD3;mY-_bDkYM{y@d za~pet+;?AP;3+CccuLaL!Pwry*3rVon&1ot%SCve^7#4NHnwi|77xuG3G!*a3c$0} z|2}JPYIyuotfR$aQ-T}YG!*b1isSFxvoUjYF|;=&cwl>U{PI)({&EWkV=F^=sXaki z{f9_+8gcxzrlGyHh4n*%`t!eo;5qXDe%{I6*py)N$Zz4~Ww&h}KQ^^?B-r};q7I%T zJARp(g`<@zLC*5`%LD|31hSIiYOcwPH8U=lezzU3Z0nV?RRr`kX95Uh#5fJkO34*F zMR4Ag<4kL|N!D!3`&IY(mg4C2zQ?4b9ZKp>gk)QcR5VJ)mqaXMo0`+PsAhX`@Jby+ zWT`%yGviXso5kJgaYC1e50}5zIIK9Ng@$AVv;E&A6|<98Nl5qK!^>J`GQj`eNAnqJ zI_{I#;A31_{(G$XM>n6M`1cWV`5Bv@%zqCdL$)=E{~nVRw?!6Dsi53aXWW>Y@V;0) z)fo~(5wF0G*rZ+$zsoPWfWdffM}H$++alZM~pCHR;mq*n8FC;6> z{1JXD{tYDQ|6PR=TDJPX5Jj!lh9{rIVrL2`s3*j^ ze*6FL{rLZU2iHaq2icMp>eh{2iRf$gtP+UZvlbfCO-Kn=Iugm4a=9z9-M#m!2bkBN zUb%dqBTnl@3;x*~ix>}j;_*&zd&9arn0mWpEJC>e-I{i<;Q^8)VoFk_*)Ex_ZKWkR zE-GqAWW852UY@V6_WZz_zkLO3gdsX2L`l0EDb>72Bs(7GY<%}=)<}j|u>-DiV_N-} z4|zS0-xR+%a{7plWbLwkJE=H=gy_^MJsvZwlUSU3^5hAbUwU3%-p7yhjJx5YoN;m) zI91dpf2*kYxJ6io43b1`W^Z|hM8$i?ZMM0!F7rV6$*W6LO;*;{%S%fZr9XfFHj8ch zb6K}yBAvy5d~AK-jMR0;@OOoU**$af^YefIx(7(CWm~@X_is+SspQgd_l^Db@BWo* zR=;_k`M$BEW00K4)uUzcH++f9U~PJ5{kPg@AmorwGwZCE#J#8Nv36A>aFK}g#6-sU z_AE7y_I^|CA2S;Tg@yl6P1#p4GBWZ<+<)*Oymd-lU43(NbK38SZO5awQ}k&6X5DVb zj~^PEnhdfrXV0GHh@%wN-DC|l;-vQrh&4oqwS14<#i*RbVt9DbQQ*qFc1{3)#L&pd z$nbD8KEJ4_sIoE#C@9_x8T-v)pEml3}wRt-d8BqOYQp~T`nRv&sYA|K#tj?wdTwynQK+E&8ph+UYS#Xp&oe3-7#iC9 z`KWO7&!2is$HxBOzkjFO{_f`_wHF0t}t42#1kWp2&7bLnr(Vcnc24lxX&+{RYwL6nx2?+_A zcOn_XKM_xonsYA?SH#L?ap_g>yj*hIH?Hj#Abu{F1-TF@^4HwR$kz}Z!$v9|)js|7 z=~J8PHEA0g8?N~KT3RoYlJW`*AEJMEKivD|ETR|-_4$y;Ep$?(|3lUAE0{-XIH~?edQ}nLq9|xKPgaV$M@NYX=?+ zmuBkAB1L4=l?Mg}wC>+88CnuOm{aoFpJKj;+MJHpS5#1d+gQE!>AYh0#$lSgf%D<`qY>>gO! zf(Nm}&oP$s_fFjP&oYoD06mJS_67SRz?@M7sZcUDGg z9u;XpIdDx)OH0$ge?QaWr*&BmuR_lUT<9wjcX=@saT?t$imEB~{t+DoMaYa#Hcs!? zOCxqo<-F;49C>=#jmSpYz~G0xm)dNL-+s3$F(+CD`> zZ@x}~ zfIjR>+?Tg+Ibz#L3f6Z$LL`ZFFUhmV_ROi_P|-3b4iE&y%X{TRq*_AGT$X1)qtG**bv3Dji;L^qw{Ksj*ULuTAKBX4y12NQnr3Nn(o>T9Bb)Fd zY1}AE3SR>}8qUif_ousCx6_e1v+5jiO%r&=@Ifm+4E05SE54)#0|RY76lGSAMYyyv zU(&6Juok0NUmt4o#kaHgKa-wTBwmg%GTb2FIKBSBeNS}hI(Q85RU(h*WnBtf3uQZa?zcF?2m~jv1sV(iqgn~ zqWR$d{n++txS$lpY}H(Oc4Is`U*oDcvPg>)L*3L!^*}bpoGdB(K2O+9uP=*myywEfUn0J zpg%2aLZh?8z{jZ%x}Ddjp{8bDsw3;f!osqKPt9=kVey|rGf0n9pTr{M41&dn0YNk) z*-R`lhlgWYcMm*Q56_UW#J8LBoO@vkS%5aPvRZ^9d+OAw3f*^ES<_2p zVhz z!Gn&DjtdtqSeE`Y=Y6A^+t${$&|m16-Z1CLB1O=b$u1{}nIzesL)}C{&vcvRS zmda)Eps76n&Sl@U86`Otppmzejzp zg>UjIJgFHito=*bED|8mJvMd(Eq>0ivZkhnyKdj!#DtA5B&TmaA|j&XVJFl@-~4-l zSVV%n8872`Mn(Za!JawC$B!R7IhBrBlUJN}q(Mn_^L7+3&d$!Rcy3p9bSS(qwZjzV z3D?TYX8FTI&1ql(GY%yn&Vz!gO$l6q^Qi?!U&s^$f!Ao!^9=7$M zxbal2w&JMzG2c7p7r8l21E{#a*jlg8{yfPGNh6sZotFf*{*wM$w9)9damJ51B(_KX zoW`_nR0mJ+D+(0}(|2wNb)FCZl$y%qi)CkLhwL&gLJw4*36Zq1DOAnHoIg)|+Kn|D z&CHyZoZM?!%3ZxG!A7?`?nlF=UyBKAG1z-4m!d3pkR7q*NQI;2{jEcbwNP^B-xNx ziCh-lux5?kF?u=zU{$4?ycYE1Bo^=B@#&LvxU>WGtL@PzG{eeB31eg9^XJd=D%Ab? zeiteM09hN6-Cwa{SZr*Y)(c^`b(37RpTooZa3ZdR&ci`)|6?wamiF@H&SFU?Pl7x^ z9D$Ttr-dIQRW9MunQ~ds;TXf&;czJ__3%F3Sv6E{!}@=p`}5<+i`J#$J~ zM$}WcK%;78`BDG7g8Y0mRbWrH(iDGfZSCRE*x?V$(yh%+3*JO1LvYsNt+y7TJM68s zG9LjV))YvwUgXu!Jc)&cg&jWzx?NI-?}cn-oU2f3X=$lZ(dP}JfnJ#ykE!sRaLE9T zK7S4#u`bgofY1OQcW`jPv}$wGhqds)RWDbqC@Lzxkh@eeXjQ6nE>M<@?xyvy>-LCC z|BoNI&`Ex4dwU)vVt?_Ws9!pwjAHE*Wq^^3%l3R<9-!LzcBoOeQob?hxi(DOKen>M zQ(X*Y%@L+&U>JL{QZshARmRyq?^r33UXOn^v;?1zflGH_c-R993_U%4WmVNR`u2kR zWq?V0e*XM9Hpac{FDD}-l$g!LL19UONzVv&Mo+jWpF&BU4w>C+K1Ibsn2w43#qZo0 ztl6$IEFf|ci?tP;p3rF$@o_h%Ry*jB(BCYbSfjP{^)++VCTz9XV{fG>B6R(Gi2$Xn zY_BXYLrJybtAZNJ$ESfqDW-{x^!2Ih>yHf&Q+1#75qqVKb98oQ5_bQPl_iy{MomK# z86JKG6$8U*4wC>`T~tCY+ZfxvU6gQ8=~Q@Hqzu0bTGUJZqhTQO{Sx4#Q0!wrav3 zaWzg31~&}#(9#x64IfKOZ($ibUhBVP!=>Ro z9G}ObGMltp4sVK!zfY|VS2|r~3_p%vdV0E*AW}*NC6)N5!>pvk>(Jqc*UduQUdX+jbtt?{5P=tm~`b?X#X1<8`7CYd3o(K z8&D0#s@)t63|nyf{nwgh3#O!+)>95Q65N+n^c?dt> zVzjouyK!)E0H-gWTR$~1F)<-wZed{v3a!%uy~OO!+7y&NY|M9FXj4z?OVokMnk4AN zo$(7shOlH~&Ua0O(8ZhyZtgnxO-Y!}8flJsq(1p`M(HEaNi}|kXiO{AqM@Ooncu%f zcE*WAGkhDy({BSb68KP2@$k;Y)st9IxD#n*m?vs*#JwtuY%$vPs4Xg5dnmd$2$Pi> z$61A*30wa7c0)9ow7;gFTZS$#F( zsX6?+0NCojp5Ext(8k^YjGAy6ozQ1jlxD^q1@zsf;~>|eI|l>=oWE(UTjdNfD#*wn z+E?$hbb9pY>gP*sCg06@U&v*d^CotfJ>cpWT&dnzZ|81Wx=cs$!qg&>tc|MGF7XYV zAC0`Y_UWie3JpH%mnX3>GKD_88Jo8M8XAf+&g$`F7|#;lJm!P?xG_7MqnN$0vf{P3 zRQAN(T~Y-`lzaE?L5v}3sDq}KN2(y?r%#_2-D#jnOiH40WGV7A}-c7QX5>M^TbWsqjbKPMWsA6==BTDikfFrmkLd zur+i%ar0vo*<&GHuzKk5PcL4)fXOFZI<^fk3RLF`U25MO=7}G*IPXMY+%`IHZo1d# za=~eaX$*QrTIZci6<@4ks?hE>OsH5E71WIzH_nDgx~94aqzDTO16H#=TcNu_?l5)| zi`ubHl&ZTe<{>X5kVk-P(Sa3qQ)EJEK0buy0{j-moae(@>??GEz8Tx^7)us(v3~sc z8eND7U`rn{Y<#;oc}Rv#3|r?0N=m!n2XI_LO>573(txz|SaGGF3dug)XJ$?{hn#^tu`UygZ9|2%6#EIk_9t?A`Z6DG^)-R=exLJo4F)-IdUJBb5KzHv zyMq=(-@g}6HWW#_gMdV=g{0$bZ{)(zTj9&c`MF@qOQ4IGis}vK>brFki@SM!mb{F< zSQKSIpCze{T!pS4M;y?qel(xy+f3}?j?#xgxdKER1_gF#a4;b$3GxD}gKc_o>1+Ul z9#*!vtW2{&BVO)O>I~f9%^L5>dwe*_}yyBE(cSq!9B9jwcy8`S!}(l~5kWaFoiva_=b_3HrYL?GSgvf_b(Lfl3@_2TI}?)Xnqqqm4|%Shr>>9*0=JHwirF3RBj zCD~s1j|uvSFe-{&qMbwJiw6jr48%GVx#EO6AC_njgfx-?=eYJM{Jbx=T=(6@I}rm` ze1V4bgi$lQs=3cQXYS>yiKLNtDkR9maJR*Lw8jjr%E`$IF5It%=OxAZu24QRuflmM zGI8Xm)>g0Gc6~lx-me`UJ_+@fL#G2lnE6j1DV^k}j>f`AhYB!g^$|WxW+w3m1azE( zGOxWdC|1xT0|H1(bxw;@hDfqT%ivI<^6Y-dM!Y;%JOE=sm*xHS__}I<0?@amq@>&$ zfM|&ykUXovBD*Ib403jjn6WV|7T3ZlVKKIO2pl|DlTQoPkb{ zCTqfHskRj_e*TP*l*S0V_nMWY2tRR#P7L4_s+)ZU%#^dxtES7f#j;f4z)(|Dd;aOZ z!|bstF0ez8*m)9*6cIqwK-c~JNk<}{-2-?S(+Ziv8eQ&rPze`q@%QiMf=C*TV#|h5 zd+{p+q!g_q9_H_rx+9U^uTQ2J`Dqa zY|NaaKx|tV@9EKUq@=^bk88eIAjEWZbRsafGSoN}*kf^_)@4teo#{Oszhn#@3Z5k) ze9j9W!>lC1@a6RMG+alYr8>vi9mdPCZMs}{VqSNfKW{T>Z*PYX7HVo}2r+d+oyQ{F zYxH1TEY->Gxy8rFcjE?WhzL|crBopbLr$7gA6|ecBGxHg?agyBKlp`1<4kl6N~UxD zBo=9Be#I(@9PMvROia|)iug6)`T5Ox z8Jz?!NU3nP`?^AkP&11NL1DjfV{`P$O0L>lM*-lffv|!?VahWIK$4uLr67IAfGtfVOH6cSC+YO5{o~7UdqGJ)YsE1*SErwaY+?WQ<|h2qaLto#KN^v7w^4xfoG)NpKgGbs33Omb$K2-M z!$VKo&4DoxCEoTn=mC40ONx2n@%Z-@6}v#l?|O(-jp*S}SSykye1XP-eFdcH&{9O}RIVB& zt3<=Tng-qT5*NRAYwEm{SdjY9xcN174GjsxC?G6+0CN^hhZ{4U0ILCy1G4`1^($Nr z3>5$mLNj0#g4qlPiLI-6=skLc`r6tR?wj-b`yRP!p{-N!iL#Z_-sR>Fj*MKArBlsm zn_h>He|UJI)ddw$lK}iP)SNmH=2%#O>h5j)`kxCWl~B7S-|_|GHrx^wjTa8 zOE3@6DuDl>5V6NP0j&bfG(duIc+FO`X)3rF~H~)r*19if}v$ZY)}=c4a#7_bl)kUjI2wwo2~T2CRapr|41N>bYHZ%`gQvih zMqCh-R#7uGoo;L-8h8oB^Z5Aq?#2u-5m-b#*8`Zrjf^DHl_9K9DOMYJlR8#i-BMQ; z7u7i8KqTAj*KfsJSy)g=VpLEUqh%gHE>O({`oK6@l;C~LxXu%pJgPoXsTj%isH=ZXsSf|`=KS2)H$lae;$5=e1z`B zMn@4P{+KUGB7I=Y6eZR7<43BX%Qq{&8T(tQGq)lZ78ix=e|-jt%%n&QX5UlX)d1x0 z>*(+@Dm;0zH)K->tRUabkCs2ctngn?y?Hl_P8uQ7 zZ#A~1*52M^6aVFQz0dEebv^#*3Vg3{ z*NCJD#lsI)d;kJU2J`if0pu$S#z|7wRQQTuvvh2QCO|?itGKur8dq9pe4EKvGY2Ut zK=2j1-xfB>hR9|Mm1MPw>cImhEP{igE<`2dWPmO zoGH|;ST8*KTgVhSlMNbMr`O>IF$>;2Encih>(8#ocxABROVEb$^GRe$SxD54Jw%uT z4Z9!#PHV=uPkYvhGDR*pR(|;+SKbO2Z_Cda-`=1Db3Vcs@@%!9*r!~j!Q~_tVuMP+ zxJa;aiX%Nl^ts|;E_bdXZ^9BVEtBrF_lCUmWKpd)qaqFR)3zt&u#G-R)o z{OJL;#tT#&m?FQy*`Hf;^;`?ne-;@DvQPWbPUO)*PtV4PJ`Uuzl`9ZDRRO>~w$B7@ z>;IwS{!7z$hJ=E_Pu zBcH9T0Ffv|#zP!86}jRjdD#`j>cnAZ1EmA@=+EKooi*2!Skz6Z?Uj9;t{olQIf&zRxdmv-Tg+MMatq58d2$^$(}@MW8`91<@S!h#vHGb#>jG zUs~}J*-P6$P%`$4%oJUGMSQwe^or|lk!XfGd8OHr@UjxF_Gsfya*0RxdX8Y!YmBhT zvn5f(Ts5H6=eZ#YphkdRajbbZ7_5pOZHU6$@43^&eApzqfBVjz)+Xya&`&y3ZBX2) z2`i+Zg3bBbAB3$`75I$Nfmj^bcghx?!1<1n#7uxJ8xxcFOZw<6Q8}* z#r$oAMmKa>|Lm9SO8xOC<8<~06*Wg0+hKm&WxryTu?;7&pj~p4JWu^$)$l52Yqb~^ zSw2jh^z`1` z-+p>^-=T`R!+V}ZQl%Go63;)G%sxsmLI7ee8d`!88B~5%b@jf?AuKTT4B!6Qs3AyG zkgu1dKGRaDdC;o6vo@ACesqDxfsLIN!(fYHc~-w%l7p0CixLYKifDdFFSPxBZqLUu zM0B1?$?uN-g5j8mrVC4GM$^PjcciBykh*Y`$=x3eAH@b;tBf2|7z?=5>fjmQdidI# zUPD8p7Q{CoR;|m<%M0DUeH*?6q-F4oedZx}(Eh8P$95)HbSG{lAXxI8M39<)KqHzk z8bM1Vm$xZ~pz7v#Hz1`GmlUEqOJbH~H~3Ug;Fbi>yVtnul+l+Dd%Jf#?H{{hQp>hH z9^t9}Ns#yR^E0sB{p6@LrkLUG>%pDspm1UM7YYO%=Hjd->g7^mk`j84oWv=TFf#Ur<6e!KMQ+kCB!oj*U-G->n%Eq5^D zHh*B-_1B-SQ{G_>3}L;LXh|vkq26#qZ>!Mi7tPn#34h<+>+{)tx33>)h%I?7k?#Fk z){FC)DImp-9E#o1rTF7ywCEv1bBl{5yzd`t;?9k(d&;SQs6!-(E3lLPnO=KWfKmZY##Sm`LKKdFIoPQ7I>RaXpBr6-i0oBBnycqM~4c zVjt&!7uCZmE$PrAnW3hT?s?k!P3?hPROgIwk(NM8U;;G@NkSbojRu2Y=}eGe_#?`I z@=f`6(2y2+>$&!e5s-OCMnLxk{w*>$nvBUVfsO~z^ez(ioNXzq9<~%^d3Gxz*Pd?8Rwl$_14B@G!+&p1oHZ~@X85J?(D!en+ zQiA$jJh%uv6Kix%em)3E2lVG@R8X1SIF!4w;{Rg74t#9ve4DI?{_(A+PUq$3$;e@g z_7Rht+-_h;2Wk6D=MQvVZwx27nMz+=odZw-dA&9m`L5NKtks_A zi#<7y%>k`gO;1Qj2_C*V zvdRZ`vAB4hb}|4LifIkWaP?{nX(gA-5PJV|kl4+jYcb6q)Fa^2YigeE@2o*tXhm@| z5t>V4HTw=sjcFyK4vTergdlp?u61;FGK+W&Oxwq`go!#Iqy4b3FnE^+gZFRW&I9HL z$}BR+=}_Wa8%67_LQ3f%5R_(cuP`v>Kv5QHQOTJNr%_DV z0rfC%m(*eQvgUbH`AIDFnaF+o>vXmz8*c1^ zG_((P1cwS;K<^rP0R4ey0_Axp7mBz4e|^AoVV$g}U! z&v?8*_=0zC-&6Fpy;pMDdrrWy4i(8TizUb-SON`Ua>!NlJ*dBDz1~AaCMJ^RqP~22 z@gx>iBP~WnZ{A3=$HITbu&=t!lND!-e?FB|@z=kCqWqk;x5RjlBd&46mW>YPV{i?s z=5L;v*`?=3vLb!sWyOMz{zeK#lK4~St}(xqJsI9Vr8?n;z)l)# zYjDK_0?zRYH$?YJc1+tNSimOJGshJ5`x)D`y<3H{;9s3nr*A02MB8A1MX;i&^s1b% zVW?@SsKhRv;y>GjS9U(j_Z-YI)dphc9CJh{<3|SufVkzh#fW+xdMGK;e86zg2<6%0W#BaiWDnHUlu3c2?$wi^UesCfmlRArGQ%6Vd>&i=@KhFV|MG(@_G zNSZu*`ecP%mT$)&A966G0Pqw@p_fw0>=q-g=QqWp0hzGJLMT^lzl4P!dkWa&Dx5Xqji>;n3=D@bRSzKlxZ$$(VZi58S+$X=%*o&RtLH0O{1+ z!h&!H?biU}q`_5ogs(>4wf@ShH(|yEFj}LhfB4p;9%vqr7&E(P$HxtTF9#a3bqYj- zFBNfeS-?xSnb=~+M0LimOK86Bv&5C%|6%5{1%R5BJ8)}G#O5RxhIoQ;f*e8S$kviU zPDdAB#u~e+PXL#Ju>ob$;2{;M6$=x2=(`5DFUG|%j5Hah&Oq7V)-5+E83Yq47$)of z&R@;>L{z1U>!4&5snM(R@;*yRI_sW8o6~LnYK1aDLWl__^1CBVL zZPbJU3;sz4Dg3qS6{@CJa<;ocz}>{RgH>Zgs5*qkv6^54IPc&L#3f5ROl0d6R5|Oi zJ(%P{V)ecW+`oidg$WNuD#r3c;Ht?$){soLtwgjZ`|_&FoGVaC%!&aZWz8OFKcHY#H_Y z%xr$~cUpGUSx7&^e(rlL}$-{^glvbt=119Wzv=|6lxAxLa7g?V{`_P>JrEH_<+ApSrbH5e$P zq;l>8!v-QESSlpaqa@OC`a~>1;7`o^h=~NQsM+gH!|?6H_F)WtOwcv6Z1Q03DcHSO_yMI0K;0#C-v4 zOK8ThHKcawpcPkqnBhxsU4YyO!6p3;+B~T5p0q%iRg5gdlwDIJ95Kal^{TZyf%r)* z_Wr^EIWKlyF~$Us#xTQKnF8w3*%`!kAZk=l2cAcZix4gMA}vRL49vZ7{UqYvp^a92 zz&}gWyfo*f3{3{z;Hu_3;2{mr&Y-ixZ!CTvBf|y;;$z#CmgsZ2OTFcqI28Cxjf{w1 zryUC!Th5>}d|I!lsDRnbL&THXQ-`q9@1VohXgQ*nOJ+y^Z{wqW{%qjcPj zj6q&{Td?K|mU}Hp!vtuUaKByTKN#OWiN*5pntP39>0hvfk%+qrG5IS$cmU;kW7mTz z@=jhK{Bp3h*iT&v^?h3btTlburKAoC6@bzP766~FUcH)>l$5I`m)Q;0Pmr~|=fHFX z&umodSBR2!Ixr63w0-5*}IaG{0(Yy zAo+hhc#g=P?*CyDHZ^!+U|ZijD%b)t%J| zsI5ps@Hs%nEH86?rGt!yv}-W}uea~Zh3!2l6#$zy;JrGvhF_nVnSq>!5UBn3lk=Rg zbp^^E05X|6SYe+&6&6Yc$8OvcP|7tmH60xOsSZhy|75}gP>e zg#NVT44Pqzq9&J9py5lsLeR_;l9Pu=Mo2f=oA6-D1m?W{8Cm_74$>cnosbX;EnPc| zzP^68MP+(AOPpN8$FD2fK~09rI#yOz@=8j;RmR zx|$8pKVTyRhl08djxI1oV-dTBbF;I!y`FJ?YWq$Aw&1Fxl>jL6HdJBeBoXMm&{54|{Bg>7XQQ zQFXPDpx~*NzT!d7>ML+LtM)#BUu$uK?-_FZw)+oT{(TVdZLF>59R(8K019WLn{e|q zFc8b@gGC=DMa91dp2|Mz%dm*}AD6S_ZHD+G4+RifmPlHpA=)4LIdLzn0#;wB$UtdM zX9mkaf6yBXP;bC!weh>dmR~*wXiTu`xYw1GoMHJ;UhWD{r=(m^P67)wAk`k;uV<$> zZfk*6?eZC1a?bA2=IgS>%xt=6zj*_}x)_a+XQU1yW{(9Elxy_e zEY%7#Lr{qXQc{zXtDo+DY@LG5h*wQ`G!=H((b2I!kCuweW~^2L**wt{1gjrAJFZw{ zoK?=JlUTgMeK9Hm3VOgA{Ccj|ugbt9CYRjlpaI@>>J#WUoyoU|omr0! z|1j<`{RC5}l9CdZ&Qb-ieI@kmyLZ50z!3^mK;Txt&wY?*&wKYyF-uh$ zU0hV8f@*=2)ZN`(<+1{&0sQ-YWYGFy!2r@0imX^)gPks%ASb6%Ha($4m{?t3$#`Fs zWNk*^>N9+Ubt&@|Bd)Dy;Eek0)$%0sgZHJ<>n~ComIpUqe&8sHB>DX)w1u_2#fSY? zY@2ta9`ODW=5}^=*4B#Y%3%6|;|dF!;IaGo5u6L`>5eu+C$YGE8Bp}bZnZ{U&Dc4n z=RWwhN&eBUE`m4!7&jl9nZe$LbmlF`S&;bPbA!kGcuZLWIsobd6s*{`ubrJ^6%OPq zzZ?bNk z$Cj4%{21{60y3uxJoxfSHJ9WCLwq~w{R}uY;3pJE8qg`R!!pwMX?ut;*hkApmLZW~ zy=&7QOyX}Xiu+DtVUZ{To=2U6(Vstkh3|k=%F8%1H1rRe%E0^cw7sC9AUGz#OaYQQ zSoI9>7_j(zpGws!0R9E=4|qVqfd?Pv{bOI&GGbz4pi02T299okRF+Y&C$uI6)`x!f7|kdITSJ$yq*u!p1x?GhW~xc%V=CQ0RB!W9uRx*dO_O3 zrC+#Ustubn#t_>lPoN$CoUr}1;YQU|PcpT!OBW&uTD!U5)Y=ZTc!eG~IR3q%p`l=q z1iay+2aw0RtE;#7xeObK#$r|D+k4_)b@cT+XEv&M`yxnAVo_BElLfECG&xbR6Hfw( zopxTIZ)oG3<4-F-e`UTT7?oemLviaicXV?*C#eoH?OjiBMu2w-l?1&BOe|pW1w$k( z7eLt4mCeDam{(Zqo1=)3y@Y^e*t)SgI2ii+kw{;=S}1p5++Y9IrkeZV{d@e)o8(eP zh65n)-@I`HCS})WzS!e5R#1T40r?qRLeNV4ENOD+ZbcARCBaox=z?n>MF|87m=9=4 zXsM5}P)7GGcn@F(e|~|9nVJ0YKCEyFF#($f96Zz?0BKmNB?fL#694@9)7y(u=(((v z`WgpYbA`*rtmuA>r`;(e_3KnaqoaDdy0AF|83$|` zyb$Ps?ChYKZWXE~fQyj3;ONWlUjSB%=7Ip6miEUo**(DNRY3_;&0UfE21Va>CMQQ1cfBqpJij-mF5f%TRb0v^U?{h?K0>X@ z%R5Cv^sjAb>(AVAR>97Vy**fDA#8B&VLs^k>%AU>4K^x5QwG4VPnTmUI=d#gBEJ8yiS+T~@=PrnN@MEa= zJZjh0>;etJ4*KmIjL!zT=fV7+k^(RqZdHp>^vtdaPn+E^NafJ_IO*HLic$Z=qHJh; z`%N>kTPTeTDjG-09~ez?_}WU1NP;BrIsc1aU7E7#5)qpgb}FymvG2qLE6#ME>G(5XfRH%G6cj4m`keGcvm`qnjQ)F9%g3OLCfyJByOh%9fwyADD<#wAP$gHZ~M z`-<5mTAZU^_O^zZ7BHSLnmop|rvKQ2i|#gu8NkZY5;l(TkLm*f<6fi>^ZChK-O)5* z`{2O^e?i|7##Xz$K1z-=d41W3cIqdwpxoGlj{|1gW`kVn}O^4prHgc!Rn)!qo3sp054c(g4O|G4a&D=DfAXIo&-P&0N8c8`oTlr zu2eCNY4uT4fel}%tgvmjLu4fB-~d~IHkOt@hlYp+1zPRaTrpeIUEMGh7mZEZ`#3lX zF#+J7;eQA92eevW0-Yde>~McaNQ8;Zp13NA={QyBu6~C}HMp0+5af60KJXcque^T; z#|h+X@1QeUT0mK=tAq4CB)X6A#h-RsUpa|If;=EkKobC6Yy7Si=jH;Z2i`SaMz90- zjg76Wxr+Rqy$A)cw6tZTx_<%I8fQAwTq<;(tAt@CBvw}I-Itjl7XT;B;Bkii4zSI^ zG~nv$>f!<-gQPeTkGWhM=OQe{ zdM?12pB<|riS~a!iBRDWEt#}T9lG`^O!}>q?524z9i5;$iBCx873*79U*CHD+AED^ zDx_-6JGR;9%hb3OP($@!zTuzAvu9c`O0%>VBde+1u^T-9(~4YEXTXs|JuuaN`Hucw zJf`&$+-e~(A!%#-oEDZ+SrzdUWt2d)t^tUNC%Ay^+&CUh)zu-JUd;v`JjEgjg1lBq zNQPPubVOdFz~ckj=|m~{p3C4A*yw!vfr*Fi2<5G)h?d?A*iiTz0+Fo^?NlruN=jfD z|9ZR`0Zs=fLvYmLoI?vskpJsZ3v&+iRNF6pWZuS_?6KhgBAw>LT{aA7K{T3`z{wN9 zfcpuYYde-jocB5D;n3(y?7;5sbt>XVbP7GN-LcH@OnH@C{$QNbt&W$foz3-$Py9Pv zC^&E6{6Zr%;P$Jn|6zWT7dP^Utv-j-hDZVt*J5O0Zaz@wBB|dm1_p8<2ITJD>-qfo zb8|C^#Al--WfaiL1|QyY!e42CotFB50%csiG2kuyXnjAR-^4d@a+kE8H@qSU2RkZc zJLu~gdBDxvu6RdNgj_;OjK2*;LIr_vLU)D-EGHFcykA?fxi!0#uki>rRlxuJ?07-< zfwuNJCZ<~Z=};^JunT|0o#V}V%Gyxynoi09m!-zh_w_54IT4W$!E9UlDX~XHzKHyX z@S6=T1pRJ!>cc}U00t;^4Gq|80m57b)u2Mm31*Hf^kLAm+m1~#mk~rVf%Fak(?|XR zBxkSy{R(;k3`bCc;WL2GuG*|Vpq>SWU?j=J#xA^J`Eyv{fP_$2C++V$ULPatmBI5- zk@*c;!Fmz=9Kb|CAjs{aqXVK&jrR;dN`(3v+hV{^gk`N?By0rh=Oge1gFrk+`lpoV z28KHR!Ub?K_gMx+QLggOEiN9PE2JrWXei_siF#1{!9^F;G#*YJtHcp!Uo`@6@akjt z!X`ev{t0lBVv>0|IY<&h6am&>JkJ2v$VNsV3WGZ26WaCtwJYR4v23~h3*piizXAjL z2sk}}T~D7r0Jd+**vtI<=j-DOj$7_0c~Ni3lVBh~L~OoWB#5DolY^}asHEaZ2r$4u z0AEs6+5go67~Ek32J&NM85Goi{paF=o`+KzM<0Zw z)+AUmLH6Zl+}OFe*~eF)L$PrsVuC+H*mh)w)MrM@9~r?yblVrvJydr@-zXwSRPLOS zDNub^0Y%EGN4M^a3&tt`I*t1A?vv7dNc3yvajA2GILrikGA)PNZ^rF2o7QNAcNj8f z*zl_zhJ4GOpTMK;8kAcj7TND+B|g~Vqf(z(Z@!mrED#T0rlbV4Tmd_l4>R3a*lktg zAXP-adPhJ*<~ol2f3>2USXu9$IjEC-Xe#`G zzu|Kd7s5u$9U0hE21l(jgK3F&aFq`_s5pu+gkeIwL7{b4Hw&bot_R>6lRw zY|+3DRA68rNYLvZBuo@Y8xXRN$@w8#Nl;tT`xn{+ErY$_SAyRQD|)SacH<;3d?+fk zI3;k%@*S~wi0`@4Ve6Y;W9qzCYN;=I`%p4VWDI~NCYOZ{^y!l-><2m4^)ud&Su24= z95^KbA~jmzmn=&qC^@?(l;q`IYes<#4Qo-|njudi=OlnyXs`%-1<%!&ybKc&31L=(#{YP5=>|#S7TNJ4t0k1ewbwY6 z4B%~JModcDM&DMw5ZdoxOe{7J&9Jy~tL}2hi2BpKd9ImMhr?{6Voum~VZG@8_$rS< z{q;{>2gn}(3vb?X&;^FJOoD9~CjP;jWA2fBj}pm*Nvm~j&#?}XxnKYF>~`V@2fWdG zgZ?X4C(hYy582s=xXBI}fv4LUVHtqeAIkzW6(p9Q6&&OJX$o9Oi|8}mroeqB; z1pfX5Kq4e!G3MDMj_nmFU_$1}`s#gGQI02h0ktqi@nL~RQ_dZE1$C$reaBl3luY#O zB=U|L6sL2n#`EfbD56@#uy`Jx4BVIA-d^A~!LSN{(PMa6=;_}-it$WqtYevOw93`O ztv#piw%otxP-*tsh-IYfbkpkRcam&K>c3XsnFXKbWr^x*>+5RY>wCdQ!8*frukiZB z^^F?}E!HIzU&p`l%4>8d)bF}U?GO3?Dx+Ya{8?IDJIbT*?I7dU?|4tt^Fyx38=*g2 zd_QJgPkTIsza@mPF$ydl9(n&N`nk3B-J1m!7Zc=-_96;O4AID|%gJ_l2`c*Y3^r>c>}H)mmsw#Xc8 z(Vn97e$ab>y>JzZ*xwbydSfg;G}Fbf)EkzP*L}McDV;e$BvD05!9@?sM1WODLBX}x zFiZzL>`ax7frSPb8tJNFjfJP8T94Z~LCYth{uF5Zrn z?Tgt;FHAu~ZkJ-4jPW>$MXxz8G$Cvo{IMc9+dwb_Hz33m{3zc_4sD{CeTIG>mZE|8 zTw6$d19IAz;$+2aK-)t9{BtpM^80r>jqT`YTG<#i^#V1HRf8t_hIQ`|OChG9?Y+Z; zJ!rQo&&9AHK_2{SJM;XKRQcnF?RG2xEMQB$=^T>{=J74!pSWkzD1eFh zS5mnc9lZG&{-6S9dvJ?ED>H%w02@q;*l!=+(Mr+6CiKKv*xrRTQar+-iG_zWiLSP$ zkMSfHzdcL;pPsHf9;)??cZI90iR`i^bz{cZCPbLA+>20zGL}$CWNWAhMVKsgnS`v_ zml3klAY>WI-hv@yi8RO(e$Uje>o1>~Ip&=AyytzN=ew~64Ok}c>!NlMdTCSsz&8*^ znlh&|xQ9{oQF(CoqC$untVc;32dJfO8x;{C?#>|T)zXr)S zq#hLG>W@b{08!93DT7YxnMs$POoph34M0IMGc)<~O`^rP|IlHi9rcrbeuA!_@bWTy zm~}-la-UR+F^m{iA`bc!n*uarDL`vbHo3ZX%&)$?`oa+vk$xK-Jg_$caaLUo3o+ov z=g!&QUX33sb6NNQJr+yhlJ2)}i|lZ-?2%VQE&>@Ws*c|?V*1QXYd}Nl3g8)F29_hj z54CyNJ6^2e46SLF#O~L4Hc$E5s6U?88Q%9iO2NCp><0R3j`0d1b%AxgL6p|*?6%oE z!FQ1J&^N3BkBFbCU0D6I3dUK}I-~A(W2*#fqrNw8%zXkv-@a)+&_DL)?stdz!^D*w z_C9fBtKop1twnhaW#{;{tYUmh|UXLGUQ^! znr8Iojx9m>2k@RlzASS5mtw5}Isa$5hrcYFndiI(j}s&#+}mGl+ZcV3@#@(oDyeVw z;?GbSRbtbBxYjcG%wh2c1ONK^I>28Ej#sUqc|f8-0*2q-T=l9x!4h(!6M(?g__%5) zsvo4ir0mK0cr6Aav91xKW%(YKmNjB*Gsp>8gVUi*jtBYD<~*{Zl*Mi@V~s(}6Ik^WNFV5&3J3_8SVo_Vg9i4Yla=|vrM75*2)mvFzpLUgTIcuW zNi&t6EgSNz3~RX zD!^xZ(-#oy6m3)@3>q})kQIZQx7pT=)35q?jfJmN5>gW)Gm_Q)z3lAvj68?c^5)9t zUcmGU2IgjG$+Gzt1#}$Ici!Te*#Uai+uF*?>8k|wZdkw5oka+1t+**Q4;e0<<8-qO%iP@v7`q)LP&>Px{&W;bIG4yBOelHmR3>Nhkt&S(Vq zrLJ5CB2)4=9Zqq!LgB2hS7GL8mUj+h2ZTD9SKtYsopo9NfxHT}m>f|@Yyq$m4=2fOe`fk8t%Mok+zPvlU^Yzc9?lrKu zQAfn>7;A%wT1d^2-}54y&$JAzEVyc~De&`yFB`xK7!J^eIXh27I)g}83Cw%40;W1Q z;TL`;+c*Zk5$McKWtem%dG4tqyoI!?{Cwb6^u4!Q%UGG?#vH3x zz$--Irv=noT94~nT3f&M6%jYbY%Zq&Pzarbp|pGwJqQB4_Z1aZQ~9ue_szCE`M28{ z5KZ7sj1k2{^CAKQ%Uj#I%VM41putC)lh1NTy~-b$gBleau4rLhZDGF+a0bOmxm^Aj z1@{GOI$n2xkqUVmkr{04?CIHO0rX%FU251WE}kDkT8;i53oybT7jcFM2^6m5t5~!@ zJer&gy~&>FTXX%#Y=)@5ch>ONu5ob4V%+^w4j$U$yaqHwZ?C+vvfsk6yi}rK*!3BT zi2fO>mmWXA3p=3{WPZjurkpwnQ@|(4oa~(PIvx)p9Vh%!VU>TFWnIL)_nv%$aZXQ) zTDX;Hlkf*i^!ri@0Km>=8xE(AjC)msFVi&ez?p-rxS$}-F3CQ{wzf7WD`>f#2~grl zEW{g1Qwv+!_ubQmb`K^oKk5ypi$Z~RYdkys4B!>FzmoqXC0u&3^r&ma!`Gkk&gO^-I}y@(_A4U+*PZgSik&>3nBq=&0p!7XuY-nX;xPC!z@uebqA zfQ9y=g*jix9lxOYdn_EiKqEsN1(z%jHu&wR*JCiGrv1^AstLj^U_Ai~W0@G|01gsr zWWY+R*le%zmp&pU6b|}|_{)cg*>z};HZz~O#Q&|M!ro{1=zHpq@A0*9u}efvwc95S zy5)8!o%P;b9XVIg%P%x5Dzdn8^JDfk!5S(TAyWKDTf$0`uf`a1n_I=m;;m&#_^zt^ z(hb(#@(-IcPDTor{gkW8*B>bvSzM8iE3?JE(u{g{c(8ly)4;|Pdz2hsO|c}YhQ<`8|54kI`_NvgDTvgqg~$PFRP+9Dvy*D9%~Y;>(p%|pm< zD)*L}6pUjE$-=JZ+6&liVA#0r&jAy_!k8A&mVA%slXmMMgYNKi(wB?}xxSO0Xdw0| zS(KF1QdV+A$nBKk4$gerv3QqQ3%~@{qvCLNFnkMn$L26EwD@_SJkiK0t3go>*eIbB z;AdOpekwqBuBU~uGcvIBIq&`nu1B-!%=wF4ypLB2)L zZZ^Y0+SLpYU41EsQvp@;fOWZ=rctE*YN{%$%ox+t;<1QVddP84-_Q7DZyp}KLP(2I zSA!OgY*{j7U!s#mbNH^~R0O)IvJox~ox7sPP7GSUskEie`=}mhf@Bn3axq3Cn6-s{ zES~LtFZ)bnhD-#eX+Psj9}9E92LFl-IdM>`*6y^p0uL?{Liu`TI;T+If*q}N$KM8| z6O>XH7JBff;gqvoAnVc*cukphdWAnk^k6Rj4wdY}W3dfeh_pYvec@G7infWS&1wa|IJ$O&pSdeEb zstwHE5T7B7K$H|0=jZQFEzOXD?Xz+Fiw6+CumVCR)G0Rab=w2au&Oz$qmz&nQB`Fr zN0cp52YIuB;jCQ`OQr;q)|FR0shLQGAId*yXCkLk=Z_6|)I`4CMA)Y8 ze4-sQ>KoHcxxM6AGO-m#$RH0l@;(T9?4dsVmcftQTJ1_QuKY@i{T#o3bbhlXfs#1; ziQsdbZY7Z#ZjS*7*ARhSEZO4LR8V>p1xy zD<7!+=oz&D-UQ8T*?q6NiP*ZbB((EH#XYqf|7`Kboz^;h{~wFYDA~0t&?-FlqX}r7%=fF3et-xQ(lLIen1M? zXph*t4H0#Q`9?kDp0Ps>eRb%!O=4l!6radyjf>_K;5@oD0@qWCjs3opM`v^?(*f$= zuH7_2CK81L;{>uvy$-n7K9P0#La7Ocp`}joLeg%DhJ04l)4#_;sgY7VPPk6tzsy-M zZHT@6q5Qh@4O`bZWlCf zYB@AR^4OIMO&A!lgN?MYQ70wE;_1SxLCQH$>FIozJ~saXqXlc-*Nm-yO2z? zLk^FP#mv=gsn0nDT~|%HKW9xY*)I2-xq+KKz@>K5n%1O<)r!UBks4NKE4I!M_dhh+ zT*mJv_TolXWj!>?y$2^JG&v#}F3mqVhRjy5P#I~ivFa00U~g>UtsTE}m$%Kc)o>8? z*cBD$o%7OK+D)La^GNd9mb;+=`?MCAny5h96G~I!)I!jL0UAdjF8SzUGBB&K# zxZbSekRw7OsrH`dhc6_eG12`HFx@*#8k(C6t!9c@Soos9?Re`-RmsO~_ZLi8ZbSr$ zPB!C8`yHe51KrQoo>%%uaL7pE(##C6OFtq&Y7jMi_=uCV!pX_$p%TGfLuusT^rvl6 zvWFxsL~Jd@8~iO-B%}jnVyC?uZFT{zHy#?lJ>kIFEK@K$JFviRBk^aN;z(}RV6COV;*DpD3K6B z7{N-%xzJOsxb&KOnf2Jtst`jbaj<5NhO3&-?<-8Ia@b*u#2~jx>VLTl_U}36<_3) zmWOT|V16W3$^I4fDduMyyGm?kcm25f0gDOo)Mopj0b(-snYazAr{je!=2>CVRftJv z3Bl`}G^1&ARdxEmG_(sY^Q&AhsN(w9GAZ<~Hk>)*^0Zgh^s9L>WI}mqRm%paZ4Lb( zvHSISw=UM!$M%nTKVId}KKn`3H0?7B{bK79>x`!F$#^1WL|f69&&`L^KR#+XDoqQK zmyT`wdGsj0o%J+*U|Pg!et3jot6^)^Ykr)yZtW)3>i4|(`Myxsdwbltdu|p#gb9e< zuVmOCO@E#7dV8$@&!KG**O_Me`CB+!A|L%NEnyTw2~k)X@MiuL90ON)1eY%?&(^GH zM5z{I$#$8mq3|nIo@_bnpMD%ewX~_9Zq@czV(QpTNc=I2OD73USLF_mVkSz^mU~ihgYqyN7Ir4)T1XpC-!$ zY5kJt-CuWAjDyLz7ewdqItO1z`LFk5#bM&ZEBAH6x_;h!F%AI~f_`WS+OfUv{~y}0 Y?a?kLxDJw_1K6|20BejX*0u}zA57EWmjD0& diff --git a/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-overview.md b/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-overview.md index 238a5d1884..019f5a531b 100644 --- a/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-overview.md +++ b/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-overview.md @@ -1,22 +1,16 @@ --- -title: AppLocker +title: AppLocker description: This topic provides a description of AppLocker and can help you decide if your organization can benefit from deploying AppLocker application control policies. -ms.assetid: 94b57864-2112-43b6-96fb-2863c985dc9a -ms.reviewer: ms.author: vinpa ms.prod: windows-client -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security ms.localizationpriority: medium author: vinaypamnani-msft manager: aaroncz -audience: ITPro -ms.collection: +ms.collection: - highpri - tier3 ms.topic: conceptual -ms.date: 10/16/2017 +ms.date: 06/07/2023 ms.technology: itpro-security --- @@ -100,7 +94,7 @@ AppLocker is included with enterprise-level editions of Windows. You can author > [!NOTE] > The GPMC is available in client computers running Windows only by installing the Remote Server Administration Tools. On computer running Windows Server, you must install the Group Policy Management feature. - + ### Using AppLocker on Server Core AppLocker on Server Core installations isn't supported. @@ -132,16 +126,16 @@ For reference in your security planning, the following table identifies the base | Setting | Default value | | - | - | | Accounts created | None | -| Authentication method | Not applicable | +| Authentication method | Not applicable | | Management interfaces | AppLocker can be managed by using a Microsoft Management Console snap-in, Group Policy Management, and Windows PowerShell | -| Ports opened | None | +| Ports opened | None | | Minimum privileges required | Administrator on the local computer; Domain Admin, or any set of rights that allow you to create, edit and distribute Group Policy Objects. | -| Protocols used | Not applicable | +| Protocols used | Not applicable | | Scheduled Tasks | Appidpolicyconverter.exe is put in a scheduled task to be run on demand. | -| Security Policies | None required. AppLocker creates security policies. | +| Security Policies | None required. AppLocker creates security policies. | | System Services required |Application Identity service (appidsvc) runs under LocalServiceAndNoImpersonation. | -| Storage of credentials | None | - +| Storage of credentials | None | + ## In this section | Topic | Description | diff --git a/windows/security/threat-protection/windows-security-configuration-framework/get-support-for-security-baselines.md b/windows/security/threat-protection/windows-security-configuration-framework/get-support-for-security-baselines.md index 65d2045cbc..cb6fa4d054 100644 --- a/windows/security/threat-protection/windows-security-configuration-framework/get-support-for-security-baselines.md +++ b/windows/security/threat-protection/windows-security-configuration-framework/get-support-for-security-baselines.md @@ -24,10 +24,10 @@ More information about this change can be found on the [Microsoft Security Guida Any version of Windows baseline before Windows 10 1703 can still be downloaded using SCM. Any future versions of Windows baseline will be available through SCT. See the version matrix in this article to see if your version of Windows baseline is available on SCT. -- [SCM 4.0 Download](/previous-versions/tn-archive/cc936627(v=technet.10)) -- [SCM Frequently Asked Questions (FAQ)](https://social.technet.microsoft.com/wiki/contents/articles/1836.microsoft-security-compliance-manager-scm-frequently-asked-questions-faq.aspx) -- [SCM Release Notes](https://social.technet.microsoft.com/wiki/contents/articles/1864.microsoft-security-compliance-manager-scm-release-notes.aspx) -- [SCM baseline download help](https://social.technet.microsoft.com/wiki/contents/articles/1865.microsoft-security-compliance-manager-scm-baseline-download-help.aspx) +- [SCM 4.0 Download](/previous-versions/tn-archive/cc936627(v=technet.10)) +- [SCM Frequently Asked Questions (FAQ)](https://social.technet.microsoft.com/wiki/contents/articles/1836.microsoft-security-compliance-manager-scm-frequently-asked-questions-faq.aspx) +- [SCM Release Notes](https://social.technet.microsoft.com/wiki/contents/articles/1864.microsoft-security-compliance-manager-scm-release-notes.aspx) +- [SCM baseline download help](https://social.technet.microsoft.com/wiki/contents/articles/1865.microsoft-security-compliance-manager-scm-baseline-download-help.aspx) **What file formats are supported by the new SCT?** @@ -45,41 +45,31 @@ No. A potential alternative is Desired State Configuration (DSC), a feature of t No. SCM supported only SCAP 1.0, which wasn't updated as SCAP evolved. The new toolkit likewise doesn't include SCAP support. -
- ## Version Matrix -**Client Versions** +**Client Versions**: | Name | Build | Baseline Release Date | Security Tools | -| ---- | ----- | --------------------- | -------------- | -| Windows 11 | [22H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-11-version-22h2-security-baseline/ba-p/3632520)
| September 2022
|[SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -| Windows 10 | [22H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-10-version-22h2-security-baseline/ba-p/3655724)
[21H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-for-windows-10-version-21h2/ba-p/3042703)
[20H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-and-windows-server/ba-p/1999393)
[1809](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-v1809-and-windows-server/ba-p/701082)
[1607](/archive/blogs/secguide/security-baseline-for-windows-10-v1607-anniversary-edition-and-windows-server-2016)
[1507](/archive/blogs/secguide/security-baseline-for-windows-10-v1507-build-10240-th1-ltsb-update)| October 2022
December 2021
December 2020
October 2018
October 2016
January 2016 |[SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -Windows 8.1 |[9600 (April Update)](/archive/blogs/secguide/security-baselines-for-windows-8-1-windows-server-2012-r2-and-internet-explorer-11-final)| October 2013| [SCM 4.0](/previous-versions/tn-archive/cc936627(v=technet.10)) | +|--|--|--|--| +| Windows 11 | [22H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-11-version-22h2-security-baseline/ba-p/3632520)
| September 2022
| [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | +| Windows 10 | [22H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-10-version-22h2-security-baseline/ba-p/3655724)
[21H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-for-windows-10-version-21h2/ba-p/3042703)
[20H2](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-and-windows-server/ba-p/1999393)
[1809](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-v1809-and-windows-server/ba-p/701082)
[1607](/archive/blogs/secguide/security-baseline-for-windows-10-v1607-anniversary-edition-and-windows-server-2016)
[1507](/archive/blogs/secguide/security-baseline-for-windows-10-v1507-build-10240-th1-ltsb-update) | October 2022
December 2021
December 2020
October 2018
October 2016
January 2016 | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -
+**Server Versions**: -**Server Versions** +| Name | Build | Baseline Release Date | Security Tools | +|------------------------|-------------------------------------------------------------------------------------------------------------------------------------------------------------|-----------------------|---------------------------------------------------------------------| +| Windows Server 2022 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-server-2022-security-baseline/ba-p/2724685) | September 2021 | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | +| Windows Server 2019 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-v1809-and-windows-server/ba-p/701082) | November 2018 | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | +| Windows Server 2016 | [SecGuide](/archive/blogs/secguide/security-baseline-for-windows-10-v1607-anniversary-edition-and-windows-server-2016) | October 2016 | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | +| Windows Server 2012 R2 | [SecGuide](/archive/blogs/secguide/security-baseline-for-windows-10-v1607-anniversary-edition-and-windows-server-2016) | August 2014 | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -| Name | Build | Baseline Release Date | Security Tools | -|---|---|---|---| -|Windows Server 2022 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-server-2022-security-baseline/ba-p/2724685) |September 2021 |[SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -|Windows Server 2019 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-v1809-and-windows-server/ba-p/701082) |November 2018 |[SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -|Windows Server 2016 | [SecGuide](/archive/blogs/secguide/security-baseline-for-windows-10-v1607-anniversary-edition-and-windows-server-2016) |October 2016 |[SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -|Windows Server 2012 R2|[SecGuide](/archive/blogs/secguide/security-baseline-for-windows-10-v1607-anniversary-edition-and-windows-server-2016)|August 2014 | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319)| +**Microsoft Products**: -
+| Name | Details | Security Tools | +|-------------------------------------------------|------------------------------------------------------------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------| +| Microsoft 365 Apps for enterprise, version 2206 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-for-microsoft-365-apps-for-enterprise-v2206/ba-p/3502714) | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | +| Microsoft Edge, version 107 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-for-microsoft-edge-v98/ba-p/3165443) | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -**Microsoft Products** - - -| Name | Details | Security Tools | -|---------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------|-----------------------------------------------------------------------------| -| Microsoft 365 Apps for enterprise, version 2206 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-for-microsoft-365-apps-for-enterprise-v2206/ba-p/3502714) | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | -| Microsoft Edge, version 107 | [SecGuide](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-for-microsoft-edge-v98/ba-p/3165443) | [SCT 1.0](https://www.microsoft.com/download/details.aspx?id=55319) | - -
- -## See also +## Related articles [Windows security baselines](windows-security-baselines.md) diff --git a/windows/security/threat-protection/windows-security-configuration-framework/security-compliance-toolkit-10.md b/windows/security/threat-protection/windows-security-configuration-framework/security-compliance-toolkit-10.md index 6f7eef0ed1..66e75d737f 100644 --- a/windows/security/threat-protection/windows-security-configuration-framework/security-compliance-toolkit-10.md +++ b/windows/security/threat-protection/windows-security-configuration-framework/security-compliance-toolkit-10.md @@ -1,94 +1,85 @@ --- -title: Microsoft Security Compliance Toolkit 1.0 Guide -description: This article describes how to use Security Compliance Toolkit 1.0 in your organization +title: Microsoft Security Compliance Toolkit Guide +description: This article describes how to use Security Compliance Toolkit in your organization ms.prod: windows-client ms.localizationpriority: medium ms.author: vinpa author: vinaypamnani-msft manager: aaroncz -ms.collection: +ms.collection: - highpri - tier3 ms.topic: conceptual -ms.date: 02/14/2022 +ms.date: 06/07/2023 ms.reviewer: rmunck ms.technology: itpro-security --- -# Microsoft Security Compliance Toolkit 1.0 - How to use +# Microsoft Security Compliance Toolkit - How to use ## What is the Security Compliance Toolkit (SCT)? The Security Compliance Toolkit (SCT) is a set of tools that allows enterprise security administrators to download, analyze, test, edit, and store Microsoft-recommended security configuration baselines for Windows and other Microsoft products. The SCT enables administrators to effectively manage their enterprise's Group Policy Objects (GPOs). Using the toolkit, administrators can compare their current GPOs with Microsoft-recommended GPO baselines or other baselines, edit them, store them in GPO backup file format, and apply them broadly through Active Directory or individually through local policy. -

The Security Compliance Toolkit consists of: -- Windows 11 security baseline - - Windows 11, version 22H2 - - Windows 11, version 21H2 -- Windows 10 security baselines - - Windows 10, version 22H2 - - Windows 10, version 21H2 - - Windows 10, version 20H2 - - Windows 10, version 1809 - - Windows 10, version 1607 - - Windows 10, version 1507 - -- Windows Server security baselines - - Windows Server 2022 - - Windows Server 2019 - - Windows Server 2016 - - Windows Server 2012 R2 - -- Microsoft Office security baseline - - Office 2016 - - Microsoft 365 Apps for Enterprise Version 2206 - -- Microsoft Edge security baseline - - Edge version 114 - -- Tools - - Policy Analyzer - - Local Group Policy Object (LGPO) - - Set Object Security - - GPO to Policy Rules - +- Windows 11 security baseline + - Windows 11, version 22H2 + - Windows 11, version 21H2 +- Windows 10 security baselines + - Windows 10, version 22H2 + - Windows 10, version 21H2 + - Windows 10, version 20H2 + - Windows 10, version 1809 + - Windows 10, version 1607 + - Windows 10, version 1507 +- Windows Server security baselines + - Windows Server 2022 + - Windows Server 2019 + - Windows Server 2016 + - Windows Server 2012 R2 +- Microsoft Office security baseline + - Office 2016 + - Microsoft 365 Apps for Enterprise Version 2206 +- Microsoft Edge security baseline + - Edge version 114 +- Tools + - Policy Analyzer + - Local Group Policy Object (LGPO) + - Set Object Security + - GPO to Policy Rules You can [download the tools](https://www.microsoft.com/download/details.aspx?id=55319) along with the baselines for the relevant Windows versions. For more information about security baseline recommendations, see the [Microsoft Security Guidance blog](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/bg-p/Microsoft-Security-Baselines). ## What is the Policy Analyzer tool? The Policy Analyzer is a utility for analyzing and comparing sets of Group Policy Objects (GPOs). Its main features include: -- Highlight when a set of Group Policies has redundant settings or internal inconsistencies -- Highlight the differences between versions or sets of Group Policies -- Compare GPOs against current local policy and local registry settings -- Export results to a Microsoft Excel spreadsheet -Policy Analyzer lets you treat a set of GPOs as a single unit. This treatment makes it easy to determine whether particular settings are duplicated across the GPOs or are set to conflicting values. Policy Analyzer also lets you capture a baseline and then compare it to a snapshot taken at a later time to identify changes anywhere across the set. +- Highlight when a set of Group Policies has redundant settings or internal inconsistencies +- Highlight the differences between versions or sets of Group Policies +- Compare GPOs against current local policy and local registry settings +- Export results to a Microsoft Excel spreadsheet + +Policy Analyzer lets you treat a set of GPOs as a single unit. This treatment makes it easy to determine whether particular settings are duplicated across the GPOs or are set to conflicting values. Policy Analyzer also lets you capture a baseline and then compare it to a snapshot taken at a later time to identify changes anywhere across the set. More information on the Policy Analyzer tool can be found on the [Microsoft Security Guidance blog](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/new-amp-updated-security-tools/ba-p/1631613) or by [downloading the tool](https://www.microsoft.com/download/details.aspx?id=55319). ## What is the Local Group Policy Object (LGPO) tool? -LGPO.exe is a command-line utility that is designed to help automate management of Local Group Policy. -Using local policy gives administrators a simple way to verify the effects of Group Policy settings, and is also useful for managing non-domain-joined systems. -LGPO.exe can import and apply settings from Registry Policy (Registry.pol) files, security templates, Advanced Auditing backup files, and from formatted "LGPO text" files. -It can export local policy to a GPO backup. -It can export the contents of a Registry Policy file to the "LGPO text" format that can then be edited, and can build a Registry Policy file from an LGPO text file. +`LGPO.exe` is a command-line utility that is designed to help automate management of Local Group Policy. Using local policy gives administrators a simple way to verify the effects of Group Policy settings, and is also useful for managing non-domain-joined systems. `LGPO.exe` can import and apply settings from Registry Policy (Registry.pol) files, security templates, Advanced Auditing backup files, and from formatted "LGPO text" files. It can export local policy to a GPO backup. It can export the contents of a Registry Policy file to the "LGPO text" format that can then be edited, and can build a Registry Policy file from an LGPO text file. Documentation for the LGPO tool can be found on the [Microsoft Security Guidance blog](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/new-amp-updated-security-tools/ba-p/1631613) or by [downloading the tool](https://www.microsoft.com/download/details.aspx?id=55319). ## What is the Set Object Security tool? -SetObjectSecurity.exe enables you to set the security descriptor for just about any type of Windows securable object, such as files, directories, registry keys, event logs, services, and SMB shares. For file system and registry objects, you can choose whether to apply inheritance rules. You can also choose to output the security descriptor in a .reg-file-compatible representation of the security descriptor for a REG_BINARY registry value. +`SetObjectSecurity.exe` enables you to set the security descriptor for just about any type of Windows securable object, such as files, directories, registry keys, event logs, services, and SMB shares. For file system and registry objects, you can choose whether to apply inheritance rules. You can also choose to output the security descriptor in a .reg file compatible representation of the security descriptor for a REG_BINARY registry value. Documentation for the Set Object Security tool can be found on the [Microsoft Security Baselines blog](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/new-amp-updated-security-tools/ba-p/1631613) or by [downloading the tool](https://www.microsoft.com/download/details.aspx?id=55319). ## What is the GPO to Policy Rules tool? -Automate the conversion of GPO backups to Policy Analyzer .PolicyRules files and skip the GUI. GPO2PolicyRules is a command-line tool that is included with the Policy Analyzer download. +Automate the conversion of GPO backups to Policy Analyzer .PolicyRules files and skip the GUI. GPO2PolicyRules is a command-line tool that is included with the Policy Analyzer download. Documentation for the GPO to PolicyRules tool can be found on the [Microsoft Security Baselines blog](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/new-amp-updated-security-tools/ba-p/1631613) or by [downloading the tool](https://www.microsoft.com/download/details.aspx?id=55319). diff --git a/windows/security/threat-protection/windows-security-configuration-framework/windows-security-baselines.md b/windows/security/threat-protection/windows-security-configuration-framework/windows-security-baselines.md index b4829615f9..ea73545214 100644 --- a/windows/security/threat-protection/windows-security-configuration-framework/windows-security-baselines.md +++ b/windows/security/threat-protection/windows-security-configuration-framework/windows-security-baselines.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium ms.author: vinpa author: vinaypamnani-msft manager: aaroncz -ms.collection: +ms.collection: - highpri - tier3 ms.topic: conceptual @@ -70,12 +70,7 @@ There are several ways to get and use security baselines: 3. MDM security baselines can easily be configured in Microsoft Intune on devices that run Windows 10 and Windows 11. For more information, see [List of the settings in the Windows 10/11 MDM security baseline in Intune](/mem/intune/protect/security-baseline-settings-mdm-all). -## Community - -[![Microsoft Security Guidance Blog.](./../images/community.png)](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/bg-p/Microsoft-Security-Baselines) - - -## See also +## Related articles - [Microsoft Security Baselines Blog](https://techcommunity.microsoft.com/t5/microsoft-security-baselines/bg-p/Microsoft-Security-Baselines) - [Microsoft Security Compliance Toolkit](https://www.microsoft.com/download/details.aspx?id=55319)