Scan Information
- Ship
- LAB BASELINES
- Hull Number
- BASELINE
- Scan Date
- 2026-03-05
- Source File
- SCHR-P3-DP-001 WinServer2022 20260305-133436
- Source Tool
- STIG Viewer CKLB
- Imported
- 2026-03-12 15:44
- Hostname (from CKL asset — override if blank or incorrect)
STIG Benchmark
Microsoft Windows Server 2022 Security Technical Implementation Guide
Version
V2R8
Score
100.0%
Total
283
Open
0
OCA Technology Area
Assign this checklist to an OCA assessment area for scoring
- Hostname
- SCHR-P3-DP-001
- STIG Benchmark
- Microsoft Windows Server 2022 Security Technical Implementation Guide
Current Area:
Not Assigned
STIG Rule Mapping
283
Mapped to STIG
0
Unmapped
283
Total Findings
All findings mapped to STIG rules.
Checklist Scoring
| Severity | Not a Finding | Not Applicable | Open | Not Reviewed | Total |
|---|---|---|---|---|---|
| CAT I | 22 | 9 | 0 | 0 | 31 |
| CAT II | 201 | 39 | 0 | 0 | 240 |
| CAT III | 10 | 2 | 0 | 0 | 12 |
| Total | 233 | 50 | 0 | 0 | 283 |
Filter:
0 selected
Vuln IDs (283)
V-254238
Windows Server 2022 users with Administrative priv...
V-254239
Windows Server 2022 passwords for the built-in Adm...
V-254240
Windows Server 2022 administrative accounts must n...
V-254241
Windows Server 2022 members of the Backup Operator...
V-254242
Windows Server 2022 manually managed application a...
V-254243
Windows Server 2022 manually managed application a...
V-254244
Windows Server 2022 shared user accounts must not ...
V-254245
Windows Server 2022 must employ a deny-all, permit...
V-254246
Windows Server 2022 domain-joined systems must hav...
V-254247
Windows Server 2022 must be maintained at a suppor...
V-254248
Windows Server 2022 must use an antivirus program.
V-254249
Windows Server 2022 must have a host-based intrusi...
V-254250
Windows Server 2022 local volumes must use a forma...
V-254251
Windows Server 2022 permissions for the system dri...
V-254252
Windows Server 2022 permissions for program file d...
V-254253
Windows Server 2022 permissions for the Windows in...
V-254254
Windows Server 2022 default permissions for the HK...
V-254255
Windows Server 2022 nonadministrative accounts or ...
V-254256
Windows Server 2022 outdated or unused accounts mu...
V-254257
Windows Server 2022 accounts must require password...
V-254258
Windows Server 2022 passwords must be configured t...
V-254259
Windows Server 2022 system files must be monitored...
V-254260
Windows Server 2022 nonsystem-created file shares ...
V-254261
Windows Server 2022 must have software certificate...
V-254262
Windows Server 2022 systems requiring data at rest...
V-254263
Windows Server 2022 must implement protection meth...
V-254264
Windows Server 2022 must have the roles and featur...
V-254265
Windows Server 2022 must have a host-based firewal...
V-254266
Windows Server 2022 must employ automated mechanis...
V-254267
Windows Server 2022 must automatically remove or d...
V-254268
Windows Server 2022 must automatically remove or d...
V-254269
Windows Server 2022 must not have the Fax Server r...
V-254270
Windows Server 2022 must not have the Microsoft FT...
V-254271
Windows Server 2022 must not have the Peer Name Re...
V-254272
Windows Server 2022 must not have Simple TCP/IP Se...
V-254273
Windows Server 2022 must not have the Telnet Clien...
V-254274
Windows Server 2022 must not have the TFTP Client ...
V-254275
Windows Server 2022 must not the Server Message Bl...
V-254276
Windows Server 2022 must have the Server Message B...
V-254277
Windows Server 2022 must have the Server Message B...
V-254278
Windows Server 2022 must not have Windows PowerShe...
V-254279
Windows Server 2022 FTP servers must be configured...
V-254280
Windows Server 2022 FTP servers must be configured...
V-254281
The Windows Server 2022 time service must synchron...
V-254282
Windows Server 2022 must have orphaned security id...
V-254283
Windows Server 2022 systems must have Unified Exte...
V-254284
Windows Server 2022 must have Secure Boot enabled.
V-254285
Windows Server 2022 account lockout duration must ...
V-254286
Windows Server 2022 must have the number of allowe...
V-254287
Windows Server 2022 must have the period of time b...
V-254288
Windows Server 2022 password history must be confi...
V-254289
Windows Server 2022 maximum password age must be c...
V-254290
Windows Server 2022 minimum password age must be c...
V-254291
Windows Server 2022 minimum password length must b...
V-254292
Windows Server 2022 must have the built-in Windows...
V-254293
Windows Server 2022 reversible password encryption...
V-254294
Windows Server 2022 audit records must be backed u...
V-254295
Windows Server 2022 must, at a minimum, offload au...
V-254296
Windows Server 2022 permissions for the Applicatio...
V-254297
Windows Server 2022 permissions for the Security e...
V-254298
Windows Server 2022 permissions for the System eve...
V-254299
Windows Server 2022 Event Viewer must be protected...
V-254300
Windows Server 2022 must be configured to audit Ac...
V-254301
Windows Server 2022 must be configured to audit Ac...
V-254302
Windows Server 2022 must be configured to audit Ac...
V-254303
Windows Server 2022 must be configured to audit Ac...
V-254304
Windows Server 2022 must be configured to audit Ac...
V-254305
Windows Server 2022 must be configured to audit Ac...
V-254306
Windows Server 2022 must be configured to audit De...
V-254307
Windows Server 2022 must be configured to audit De...
V-254309
Windows Server 2022 must be configured to audit Lo...
V-254310
Windows Server 2022 must be configured to audit Lo...
V-254311
Windows Server 2022 must be configured to audit lo...
V-254312
Windows Server 2022 must be configured to audit lo...
V-254313
Windows Server 2022 must be configured to audit lo...
V-254314
Windows Server 2022 must be configured to audit Lo...
V-254315
Windows Server 2022 must be configured to audit Ob...
V-254316
Windows Server 2022 must be configured to audit Ob...
V-254317
Windows Server 2022 must be configured to audit Ob...
V-254318
Windows Server 2022 must be configured to audit Ob...
V-254319
Windows Server 2022 must be configured to audit Po...
V-254320
Windows Server 2022 must be configured to audit Po...
V-254321
Windows Server 2022 must be configured to audit Po...
V-254322
Windows Server 2022 must be configured to audit Po...
V-254323
Windows Server 2022 must be configured to audit Pr...
V-254324
Windows Server 2022 must be configured to audit Pr...
V-254325
Windows Server 2022 must be configured to audit Sy...
V-254326
Windows Server 2022 must be configured to audit Sy...
V-254327
Windows Server 2022 must be configured to audit Sy...
V-254328
Windows Server 2022 must be configured to audit Sy...
V-254329
Windows Server 2022 must be configured to audit Sy...
V-254330
Windows Server 2022 must be configured to audit Sy...
V-254331
Windows Server 2022 must be configured to audit Sy...
V-254332
Windows Server 2022 must be configured to audit Sy...
V-254333
Windows Server 2022 must prevent the display of sl...
V-254334
Windows Server 2022 must have WDigest Authenticati...
V-254335
Windows Server 2022 Internet Protocol version 6 (I...
V-254336
Windows Server 2022 source routing must be configu...
V-254337
Windows Server 2022 must be configured to prevent ...
V-254338
Windows Server 2022 must be configured to ignore N...
V-254339
Windows Server 2022 insecure logons to an SMB serv...
V-254340
Windows Server 2022 hardened Universal Naming Conv...
V-254341
Windows Server 2022 command line data must be incl...
V-254342
Windows Server 2022 must be configured to enable R...
V-254343
Windows Server 2022 virtualization-based security ...
V-254344
Windows Server 2022 Early Launch Antimalware, Boot...
V-254345
Windows Server 2022 group policy objects must be r...
V-254346
Windows Server 2022 downloading print driver packa...
V-254347
Windows Server 2022 printing over HTTP must be tur...
V-254348
Windows Server 2022 network selection user interfa...
V-254349
Windows Server 2022 users must be prompted to auth...
V-254350
Windows Server 2022 users must be prompted to auth...
V-254351
Windows Server 2022 Application Compatibility Prog...
V-254352
Windows Server 2022 Autoplay must be turned off fo...
V-254353
Windows Server 2022 default AutoRun behavior must ...
V-254354
Windows Server 2022 AutoPlay must be disabled for ...
V-254355
Windows Server 2022 administrator accounts must no...
V-254356
Windows Server 2022 Diagnostic Data must be config...
V-254357
Windows Server 2022 Windows Update must not obtain...
V-254358
Windows Server 2022 Application event log size mus...
V-254359
The Windows Server 2022 security event log size mu...
V-254360
Windows Server 2022 System event log size must be ...
V-254361
Windows Server 2022 Microsoft Defender antivirus S...
V-254362
Windows Server 2022 Explorer Data Execution Preven...
V-254363
Windows Server 2022 Turning off File Explorer heap...
V-254364
Windows Server 2022 File Explorer shell protocol m...
V-254365
Windows Server 2022 must not save passwords in the...
V-254366
Windows Server 2022 Remote Desktop Services must p...
V-254367
Windows Server 2022 Remote Desktop Services must a...
V-254368
Windows Server 2022 Remote Desktop Services must r...
V-254369
Windows Server 2022 Remote Desktop Services must b...
V-254370
Windows Server 2022 must prevent attachments from ...
V-254371
Windows Server 2022 must disable Basic authenticat...
V-254372
Windows Server 2022 must prevent Indexing of encry...
V-254373
Windows Server 2022 must prevent users from changi...
V-254374
Windows Server 2022 must disable the Windows Insta...
V-254375
Windows Server 2022 users must be notified if a we...
V-254376
Windows Server 2022 must disable automatically sig...
V-254377
Windows Server 2022 PowerShell script block loggin...
V-254378
Windows Server 2022 Windows Remote Management (Win...
V-254379
Windows Server 2022 Windows Remote Management (Win...
V-254380
Windows Server 2022 Windows Remote Management (Win...
V-254381
Windows Server 2022 Windows Remote Management (Win...
V-254382
Windows Server 2022 Windows Remote Management (Win...
V-254383
Windows Server 2022 Windows Remote Management (Win...
V-254384
Windows Server 2022 must have PowerShell Transcrip...
V-254385
Windows Server 2022 must only allow administrators...
V-254386
Windows Server 2022 Kerberos user logon restrictio...
V-254387
Windows Server 2022 Kerberos service ticket maximu...
V-254388
Windows Server 2022 Kerberos user ticket lifetime ...
V-254389
Windows Server 2022 Kerberos policy user ticket re...
V-254390
Windows Server 2022 computer clock synchronization...
V-254391
Windows Server 2022 permissions on the Active Dire...
V-254392
Windows Server 2022 Active Directory SYSVOL direct...
V-254393
Windows Server 2022 Active Directory Group Policy ...
V-254394
Windows Server 2022 Active Directory Domain Contro...
V-254395
Windows Server 2022 organization created Active Di...
V-254396
Windows Server 2022 data files owned by users must...
V-254397
Windows Server 2022 domain controllers must run on...
V-254398
Windows Server 2022 must use separate, NSA-approve...
V-254399
Windows Server 2022 directory data (outside the ro...
V-254400
Windows Server 2022 directory service must be conf...
V-254401
Windows Server 2022 Active Directory Group Policy ...
V-254402
Windows Server 2022 Active Directory Domain object...
V-254403
Windows Server 2022 Active Directory Infrastructur...
V-254404
Windows Server 2022 Active Directory Domain Contro...
V-254405
Windows Server 2022 Active Directory AdminSDHolder...
V-254406
Windows Server 2022 Active Directory RID Manager$ ...
V-254407
Windows Server 2022 must be configured to audit Ac...
V-254408
Windows Server 2022 must be configured to audit DS...
V-254409
Windows Server 2022 must be configured to audit DS...
V-254410
Windows Server 2022 must be configured to audit DS...
V-254412
Windows Server 2022 domain controllers must have a...
V-254413
Windows Server 2022 domain controller PKI certific...
V-254414
Windows Server 2022 PKI certificates associated wi...
V-254415
Windows Server 2022 Active Directory user accounts...
V-254416
Windows Server 2022 domain controllers must requir...
V-254417
Windows Server 2022 domain controllers must be con...
V-254418
Windows Server 2022 Access this computer from the ...
V-254419
Windows Server 2022 Add workstations to domain use...
V-254420
Windows Server 2022 Allow log on through Remote De...
V-254421
Windows Server 2022 Deny access to this computer f...
V-254422
Windows Server 2022 Deny log on as a batch job use...
V-254423
Windows Server 2022 Deny log on as a service user ...
V-254424
Windows Server 2022 Deny log on locally user right...
V-254425
Windows Server 2022 Deny log on through Remote Des...
V-254426
Windows Server 2022 Enable computer and user accou...
V-254427
The password for the krbtgt account on a domain mu...
V-254428
Windows Server 2022 must only allow administrators...
V-254429
Windows Server 2022 local administrator accounts m...
V-254430
Windows Server 2022 local users on domain-joined m...
V-254431
Windows Server 2022 must restrict unauthenticated ...
V-254432
Windows Server 2022 must limit the caching of logo...
V-254433
Windows Server 2022 must restrict remote calls to ...
V-254434
Windows Server 2022 Access this computer from the ...
V-254435
Windows Server 2022 Deny access to this computer f...
V-254436
Windows Server 2022 Deny log on as a batch job use...
V-254437
Windows Server 2022 Deny log on as a service user ...
V-254438
Windows Server 2022 Deny log on locally user right...
V-254439
Windows Server 2022 Deny log on through Remote Des...
V-254440
Windows Server 2022 Enable computer and user accou...
V-254441
Windows Server 2022 must be running Credential Gua...
V-254442
Windows Server 2022 must have the DoD Root Certifi...
V-254443
Windows Server 2022 must have the DoD Interoperabi...
V-254444
Windows Server 2022 must have the US DOD CCEB Inte...
V-254445
Windows Server 2022 must have the built-in guest a...
V-254446
Windows Server 2022 must prevent local accounts wi...
V-254447
Windows Server 2022 built-in administrator account...
V-254448
Windows Server 2022 built-in guest account must be...
V-254449
Windows Server 2022 must force audit policy subcat...
V-254450
Windows Server 2022 setting Domain member: Digital...
V-254451
Windows Server 2022 setting Domain member: Digital...
V-254452
Windows Server 2022 setting Domain member: Digital...
V-254453
Windows Server 2022 computer account password must...
V-254454
Windows Server 2022 maximum age for machine accoun...
V-254455
Windows Server 2022 must be configured to require ...
V-254456
Windows Server 2022 machine inactivity limit must ...
V-254457
Windows Server 2022 required legal notice must be ...
V-254458
Windows Server 2022 title for legal banner dialog ...
V-254459
Windows Server 2022 Smart Card removal option must...
V-254460
Windows Server 2022 setting Microsoft network clie...
V-254461
Windows Server 2022 setting Microsoft network clie...
V-254462
Windows Server 2022 unencrypted passwords must not...
V-254463
Windows Server 2022 setting Microsoft network serv...
V-254464
Windows Server 2022 setting Microsoft network serv...
V-254465
Windows Server 2022 must not allow anonymous SID/N...
V-254466
Windows Server 2022 must not allow anonymous enume...
V-254467
Windows Server 2022 must not allow anonymous enume...
V-254468
Windows Server 2022 must be configured to prevent ...
V-254469
Windows Server 2022 must restrict anonymous access...
V-254470
Windows Server 2022 services using Local System th...
V-254471
Windows Server 2022 must prevent NTLM from falling...
V-254472
Windows Server 2022 must prevent PKU2U authenticat...
V-254473
Windows Server 2022 Kerberos encryption types must...
V-254474
Windows Server 2022 must be configured to prevent ...
V-254475
Windows Server 2022 LAN Manager authentication lev...
V-254476
Windows Server 2022 must be configured to at least...
V-254477
Windows Server 2022 session security for NTLM SSP-...
V-254478
Windows Server 2022 session security for NTLM SSP-...
V-254479
Windows Server 2022 users must be required to ente...
V-254480
Windows Server 2022 must be configured to use FIPS...
V-254481
Windows Server 2022 default permissions of global ...
V-254482
Windows Server 2022 User Account Control (UAC) app...
V-254483
Windows Server 2022 UIAccess applications must not...
V-254484
Windows Server 2022 User Account Control (UAC) mus...
V-254485
Windows Server 2022 User Account Control (UAC) mus...
V-254486
Windows Server 2022 User Account Control (UAC) mus...
V-254487
Windows Server 2022 User Account Control (UAC) mus...
V-254488
Windows Server 2022 User Account Control (UAC) mus...
V-254489
Windows Server 2022 User Account Control (UAC) mus...
V-254490
Windows Server 2022 must preserve zone information...
V-254491
Windows Server 2022 Access Credential Manager as a...
V-254492
Windows Server 2022 Act as part of the operating s...
V-254493
Windows Server 2022 Allow log on locally user righ...
V-254494
Windows Server 2022 back up files and directories ...
V-254495
Windows Server 2022 create a pagefile user right m...
V-254496
Windows Server 2022 create a token object user rig...
V-254497
Windows Server 2022 create global objects user rig...
V-254498
Windows Server 2022 create permanent shared object...
V-254499
Windows Server 2022 create symbolic links user rig...
V-254500
Windows Server 2022 debug programs user right must...
V-254501
Windows Server 2022 force shutdown from a remote s...
V-254502
Windows Server 2022 generate security audits user ...
V-254503
Windows Server 2022 impersonate a client after aut...
V-254504
Windows Server 2022 increase scheduling priority: ...
V-254505
Windows Server 2022 load and unload device drivers...
V-254506
Windows Server 2022 lock pages in memory user righ...
V-254507
Windows Server 2022 manage auditing and security l...
V-254508
Windows Server 2022 modify firmware environment va...
V-254509
Windows Server 2022 perform volume maintenance tas...
V-254510
Windows Server 2022 profile single process user ri...
V-254511
Windows Server 2022 restore files and directories ...
V-254512
Windows Server 2022 take ownership of files or oth...
V-271426
Windows Server 2022 must be configured for certifi...
V-271427
Windows Server 2022 must be configured for name-ba...
V-278942
Windows Server 2022 must be configured to audit fi...
V-278943
Windows Server 2022 must be configured to audit fi...
V-278944
Windows Server 2022 must be configured to audit ha...
V-278945
Windows Server 2022 must be configured to audit ha...
V-278946
Windows Server 2022 must be configured to audit re...
V-278947
Windows Server 2022 must be configured to audit re...
V-278948
Windows Server 2022 must be configured to audit se...
V-278949
Windows Server 2022 must be configured to audit se...
Vulnerability Details
Click a Vuln ID on the left to view details.
Status & Comments
Select a finding to edit.