[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Turn on definition retirement

ID: oval:org.secpod.oval:def:35217Date: (C)2016-06-10   (M)2023-12-13
Class: COMPLIANCEFamily: windows




This policy setting allows you to configure definition retirement for network protection against exploits of known vulnerabilities. Definition retirement checks to see if a computer has the required security updates necessary to protect it against a particular vulnerability. If the system is not vulnerable to the exploit detected by a definition, then that definition is "retired". If all definitions for a given protocol are retired then that protocol is no longer parsed. Enabling this feature helps to improve performance. On a computer that is up-to-date with all the latest security updates, network protection will have no impact on network performance. If you enable or do not configure this setting, definition retirement will be enabled. If you disable this setting, definition retirement will be disabled. Counter Measure: Configure this setting depending on your organization's requirements. Potential Impact: Depending on configuration, definition retirement will not occur and could impact network performance. Fix: (1) GPO: Computer Configuration\Administrative Templates\Windows Components\Windows Defender\Network Inspection System\Turn on definition retirement (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows Defender\NIS\Consumers\IPS!DisableSignatureRetirement

Platform:
Microsoft Windows 10
Reference:
CCE-42981-1
CCE    1
CCE-42981-1
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_10

© SecPod Technologies