Skip to main content
CUI

Scan: SCHR-P3-DP-001_WinServer2022_V2R7_20260305-133436.cklb

Scan Information

Hull Number
BASELINE
Scan Date
2026-03-05
Source File
SCHR-P3-DP-001 WinServer2022 20260305-133436
Source Tool
STIG Viewer CKLB
Imported
2026-03-12 15:44
Hostname (from CKL asset — override if blank or incorrect)
STIG Benchmark

Microsoft Windows Server 2022 Security Technical Implementation Guide

Version

V2R8

Score

100.0%

Total

283

Open

0

OCA Technology Area

Assign this checklist to an OCA assessment area for scoring

Hostname
SCHR-P3-DP-001
STIG Benchmark
Microsoft Windows Server 2022 Security Technical Implementation Guide
Current Area: Not Assigned

STIG Rule Mapping

283
Mapped to STIG
0
Unmapped
283
Total Findings
All findings mapped to STIG rules.

Checklist Scoring

Severity Not a Finding Not Applicable Open Not Reviewed Total
CAT I 22 9 0 0 31
CAT II 201 39 0 0 240
CAT III 10 2 0 0 12
Total 233 50 0 0 283
Filter:

Vuln IDs (283)

V-254238 Windows Server 2022 users with Administrative priv...
V-254239 Windows Server 2022 passwords for the built-in Adm...
V-254240 Windows Server 2022 administrative accounts must n...
V-254241 Windows Server 2022 members of the Backup Operator...
V-254242 Windows Server 2022 manually managed application a...
V-254243 Windows Server 2022 manually managed application a...
V-254244 Windows Server 2022 shared user accounts must not ...
V-254245 Windows Server 2022 must employ a deny-all, permit...
V-254246 Windows Server 2022 domain-joined systems must hav...
V-254247 Windows Server 2022 must be maintained at a suppor...
V-254248 Windows Server 2022 must use an antivirus program.
V-254249 Windows Server 2022 must have a host-based intrusi...
V-254250 Windows Server 2022 local volumes must use a forma...
V-254251 Windows Server 2022 permissions for the system dri...
V-254252 Windows Server 2022 permissions for program file d...
V-254253 Windows Server 2022 permissions for the Windows in...
V-254254 Windows Server 2022 default permissions for the HK...
V-254255 Windows Server 2022 nonadministrative accounts or ...
V-254256 Windows Server 2022 outdated or unused accounts mu...
V-254257 Windows Server 2022 accounts must require password...
V-254258 Windows Server 2022 passwords must be configured t...
V-254259 Windows Server 2022 system files must be monitored...
V-254260 Windows Server 2022 nonsystem-created file shares ...
V-254261 Windows Server 2022 must have software certificate...
V-254262 Windows Server 2022 systems requiring data at rest...
V-254263 Windows Server 2022 must implement protection meth...
V-254264 Windows Server 2022 must have the roles and featur...
V-254265 Windows Server 2022 must have a host-based firewal...
V-254266 Windows Server 2022 must employ automated mechanis...
V-254267 Windows Server 2022 must automatically remove or d...
V-254268 Windows Server 2022 must automatically remove or d...
V-254269 Windows Server 2022 must not have the Fax Server r...
V-254270 Windows Server 2022 must not have the Microsoft FT...
V-254271 Windows Server 2022 must not have the Peer Name Re...
V-254272 Windows Server 2022 must not have Simple TCP/IP Se...
V-254273 Windows Server 2022 must not have the Telnet Clien...
V-254274 Windows Server 2022 must not have the TFTP Client ...
V-254275 Windows Server 2022 must not the Server Message Bl...
V-254276 Windows Server 2022 must have the Server Message B...
V-254277 Windows Server 2022 must have the Server Message B...
V-254278 Windows Server 2022 must not have Windows PowerShe...
V-254279 Windows Server 2022 FTP servers must be configured...
V-254280 Windows Server 2022 FTP servers must be configured...
V-254281 The Windows Server 2022 time service must synchron...
V-254282 Windows Server 2022 must have orphaned security id...
V-254283 Windows Server 2022 systems must have Unified Exte...
V-254284 Windows Server 2022 must have Secure Boot enabled.
V-254285 Windows Server 2022 account lockout duration must ...
V-254286 Windows Server 2022 must have the number of allowe...
V-254287 Windows Server 2022 must have the period of time b...
V-254288 Windows Server 2022 password history must be confi...
V-254289 Windows Server 2022 maximum password age must be c...
V-254290 Windows Server 2022 minimum password age must be c...
V-254291 Windows Server 2022 minimum password length must b...
V-254292 Windows Server 2022 must have the built-in Windows...
V-254293 Windows Server 2022 reversible password encryption...
V-254294 Windows Server 2022 audit records must be backed u...
V-254295 Windows Server 2022 must, at a minimum, offload au...
V-254296 Windows Server 2022 permissions for the Applicatio...
V-254297 Windows Server 2022 permissions for the Security e...
V-254298 Windows Server 2022 permissions for the System eve...
V-254299 Windows Server 2022 Event Viewer must be protected...
V-254300 Windows Server 2022 must be configured to audit Ac...
V-254301 Windows Server 2022 must be configured to audit Ac...
V-254302 Windows Server 2022 must be configured to audit Ac...
V-254303 Windows Server 2022 must be configured to audit Ac...
V-254304 Windows Server 2022 must be configured to audit Ac...
V-254305 Windows Server 2022 must be configured to audit Ac...
V-254306 Windows Server 2022 must be configured to audit De...
V-254307 Windows Server 2022 must be configured to audit De...
V-254309 Windows Server 2022 must be configured to audit Lo...
V-254310 Windows Server 2022 must be configured to audit Lo...
V-254311 Windows Server 2022 must be configured to audit lo...
V-254312 Windows Server 2022 must be configured to audit lo...
V-254313 Windows Server 2022 must be configured to audit lo...
V-254314 Windows Server 2022 must be configured to audit Lo...
V-254315 Windows Server 2022 must be configured to audit Ob...
V-254316 Windows Server 2022 must be configured to audit Ob...
V-254317 Windows Server 2022 must be configured to audit Ob...
V-254318 Windows Server 2022 must be configured to audit Ob...
V-254319 Windows Server 2022 must be configured to audit Po...
V-254320 Windows Server 2022 must be configured to audit Po...
V-254321 Windows Server 2022 must be configured to audit Po...
V-254322 Windows Server 2022 must be configured to audit Po...
V-254323 Windows Server 2022 must be configured to audit Pr...
V-254324 Windows Server 2022 must be configured to audit Pr...
V-254325 Windows Server 2022 must be configured to audit Sy...
V-254326 Windows Server 2022 must be configured to audit Sy...
V-254327 Windows Server 2022 must be configured to audit Sy...
V-254328 Windows Server 2022 must be configured to audit Sy...
V-254329 Windows Server 2022 must be configured to audit Sy...
V-254330 Windows Server 2022 must be configured to audit Sy...
V-254331 Windows Server 2022 must be configured to audit Sy...
V-254332 Windows Server 2022 must be configured to audit Sy...
V-254333 Windows Server 2022 must prevent the display of sl...
V-254334 Windows Server 2022 must have WDigest Authenticati...
V-254335 Windows Server 2022 Internet Protocol version 6 (I...
V-254336 Windows Server 2022 source routing must be configu...
V-254337 Windows Server 2022 must be configured to prevent ...
V-254338 Windows Server 2022 must be configured to ignore N...
V-254339 Windows Server 2022 insecure logons to an SMB serv...
V-254340 Windows Server 2022 hardened Universal Naming Conv...
V-254341 Windows Server 2022 command line data must be incl...
V-254342 Windows Server 2022 must be configured to enable R...
V-254343 Windows Server 2022 virtualization-based security ...
V-254344 Windows Server 2022 Early Launch Antimalware, Boot...
V-254345 Windows Server 2022 group policy objects must be r...
V-254346 Windows Server 2022 downloading print driver packa...
V-254347 Windows Server 2022 printing over HTTP must be tur...
V-254348 Windows Server 2022 network selection user interfa...
V-254349 Windows Server 2022 users must be prompted to auth...
V-254350 Windows Server 2022 users must be prompted to auth...
V-254351 Windows Server 2022 Application Compatibility Prog...
V-254352 Windows Server 2022 Autoplay must be turned off fo...
V-254353 Windows Server 2022 default AutoRun behavior must ...
V-254354 Windows Server 2022 AutoPlay must be disabled for ...
V-254355 Windows Server 2022 administrator accounts must no...
V-254356 Windows Server 2022 Diagnostic Data must be config...
V-254357 Windows Server 2022 Windows Update must not obtain...
V-254358 Windows Server 2022 Application event log size mus...
V-254359 The Windows Server 2022 security event log size mu...
V-254360 Windows Server 2022 System event log size must be ...
V-254361 Windows Server 2022 Microsoft Defender antivirus S...
V-254362 Windows Server 2022 Explorer Data Execution Preven...
V-254363 Windows Server 2022 Turning off File Explorer heap...
V-254364 Windows Server 2022 File Explorer shell protocol m...
V-254365 Windows Server 2022 must not save passwords in the...
V-254366 Windows Server 2022 Remote Desktop Services must p...
V-254367 Windows Server 2022 Remote Desktop Services must a...
V-254368 Windows Server 2022 Remote Desktop Services must r...
V-254369 Windows Server 2022 Remote Desktop Services must b...
V-254370 Windows Server 2022 must prevent attachments from ...
V-254371 Windows Server 2022 must disable Basic authenticat...
V-254372 Windows Server 2022 must prevent Indexing of encry...
V-254373 Windows Server 2022 must prevent users from changi...
V-254374 Windows Server 2022 must disable the Windows Insta...
V-254375 Windows Server 2022 users must be notified if a we...
V-254376 Windows Server 2022 must disable automatically sig...
V-254377 Windows Server 2022 PowerShell script block loggin...
V-254378 Windows Server 2022 Windows Remote Management (Win...
V-254379 Windows Server 2022 Windows Remote Management (Win...
V-254380 Windows Server 2022 Windows Remote Management (Win...
V-254381 Windows Server 2022 Windows Remote Management (Win...
V-254382 Windows Server 2022 Windows Remote Management (Win...
V-254383 Windows Server 2022 Windows Remote Management (Win...
V-254384 Windows Server 2022 must have PowerShell Transcrip...
V-254385 Windows Server 2022 must only allow administrators...
V-254386 Windows Server 2022 Kerberos user logon restrictio...
V-254387 Windows Server 2022 Kerberos service ticket maximu...
V-254388 Windows Server 2022 Kerberos user ticket lifetime ...
V-254389 Windows Server 2022 Kerberos policy user ticket re...
V-254390 Windows Server 2022 computer clock synchronization...
V-254391 Windows Server 2022 permissions on the Active Dire...
V-254392 Windows Server 2022 Active Directory SYSVOL direct...
V-254393 Windows Server 2022 Active Directory Group Policy ...
V-254394 Windows Server 2022 Active Directory Domain Contro...
V-254395 Windows Server 2022 organization created Active Di...
V-254396 Windows Server 2022 data files owned by users must...
V-254397 Windows Server 2022 domain controllers must run on...
V-254398 Windows Server 2022 must use separate, NSA-approve...
V-254399 Windows Server 2022 directory data (outside the ro...
V-254400 Windows Server 2022 directory service must be conf...
V-254401 Windows Server 2022 Active Directory Group Policy ...
V-254402 Windows Server 2022 Active Directory Domain object...
V-254403 Windows Server 2022 Active Directory Infrastructur...
V-254404 Windows Server 2022 Active Directory Domain Contro...
V-254405 Windows Server 2022 Active Directory AdminSDHolder...
V-254406 Windows Server 2022 Active Directory RID Manager$ ...
V-254407 Windows Server 2022 must be configured to audit Ac...
V-254408 Windows Server 2022 must be configured to audit DS...
V-254409 Windows Server 2022 must be configured to audit DS...
V-254410 Windows Server 2022 must be configured to audit DS...
V-254412 Windows Server 2022 domain controllers must have a...
V-254413 Windows Server 2022 domain controller PKI certific...
V-254414 Windows Server 2022 PKI certificates associated wi...
V-254415 Windows Server 2022 Active Directory user accounts...
V-254416 Windows Server 2022 domain controllers must requir...
V-254417 Windows Server 2022 domain controllers must be con...
V-254418 Windows Server 2022 Access this computer from the ...
V-254419 Windows Server 2022 Add workstations to domain use...
V-254420 Windows Server 2022 Allow log on through Remote De...
V-254421 Windows Server 2022 Deny access to this computer f...
V-254422 Windows Server 2022 Deny log on as a batch job use...
V-254423 Windows Server 2022 Deny log on as a service user ...
V-254424 Windows Server 2022 Deny log on locally user right...
V-254425 Windows Server 2022 Deny log on through Remote Des...
V-254426 Windows Server 2022 Enable computer and user accou...
V-254427 The password for the krbtgt account on a domain mu...
V-254428 Windows Server 2022 must only allow administrators...
V-254429 Windows Server 2022 local administrator accounts m...
V-254430 Windows Server 2022 local users on domain-joined m...
V-254431 Windows Server 2022 must restrict unauthenticated ...
V-254432 Windows Server 2022 must limit the caching of logo...
V-254433 Windows Server 2022 must restrict remote calls to ...
V-254434 Windows Server 2022 Access this computer from the ...
V-254435 Windows Server 2022 Deny access to this computer f...
V-254436 Windows Server 2022 Deny log on as a batch job use...
V-254437 Windows Server 2022 Deny log on as a service user ...
V-254438 Windows Server 2022 Deny log on locally user right...
V-254439 Windows Server 2022 Deny log on through Remote Des...
V-254440 Windows Server 2022 Enable computer and user accou...
V-254441 Windows Server 2022 must be running Credential Gua...
V-254442 Windows Server 2022 must have the DoD Root Certifi...
V-254443 Windows Server 2022 must have the DoD Interoperabi...
V-254444 Windows Server 2022 must have the US DOD CCEB Inte...
V-254445 Windows Server 2022 must have the built-in guest a...
V-254446 Windows Server 2022 must prevent local accounts wi...
V-254447 Windows Server 2022 built-in administrator account...
V-254448 Windows Server 2022 built-in guest account must be...
V-254449 Windows Server 2022 must force audit policy subcat...
V-254450 Windows Server 2022 setting Domain member: Digital...
V-254451 Windows Server 2022 setting Domain member: Digital...
V-254452 Windows Server 2022 setting Domain member: Digital...
V-254453 Windows Server 2022 computer account password must...
V-254454 Windows Server 2022 maximum age for machine accoun...
V-254455 Windows Server 2022 must be configured to require ...
V-254456 Windows Server 2022 machine inactivity limit must ...
V-254457 Windows Server 2022 required legal notice must be ...
V-254458 Windows Server 2022 title for legal banner dialog ...
V-254459 Windows Server 2022 Smart Card removal option must...
V-254460 Windows Server 2022 setting Microsoft network clie...
V-254461 Windows Server 2022 setting Microsoft network clie...
V-254462 Windows Server 2022 unencrypted passwords must not...
V-254463 Windows Server 2022 setting Microsoft network serv...
V-254464 Windows Server 2022 setting Microsoft network serv...
V-254465 Windows Server 2022 must not allow anonymous SID/N...
V-254466 Windows Server 2022 must not allow anonymous enume...
V-254467 Windows Server 2022 must not allow anonymous enume...
V-254468 Windows Server 2022 must be configured to prevent ...
V-254469 Windows Server 2022 must restrict anonymous access...
V-254470 Windows Server 2022 services using Local System th...
V-254471 Windows Server 2022 must prevent NTLM from falling...
V-254472 Windows Server 2022 must prevent PKU2U authenticat...
V-254473 Windows Server 2022 Kerberos encryption types must...
V-254474 Windows Server 2022 must be configured to prevent ...
V-254475 Windows Server 2022 LAN Manager authentication lev...
V-254476 Windows Server 2022 must be configured to at least...
V-254477 Windows Server 2022 session security for NTLM SSP-...
V-254478 Windows Server 2022 session security for NTLM SSP-...
V-254479 Windows Server 2022 users must be required to ente...
V-254480 Windows Server 2022 must be configured to use FIPS...
V-254481 Windows Server 2022 default permissions of global ...
V-254482 Windows Server 2022 User Account Control (UAC) app...
V-254483 Windows Server 2022 UIAccess applications must not...
V-254484 Windows Server 2022 User Account Control (UAC) mus...
V-254485 Windows Server 2022 User Account Control (UAC) mus...
V-254486 Windows Server 2022 User Account Control (UAC) mus...
V-254487 Windows Server 2022 User Account Control (UAC) mus...
V-254488 Windows Server 2022 User Account Control (UAC) mus...
V-254489 Windows Server 2022 User Account Control (UAC) mus...
V-254490 Windows Server 2022 must preserve zone information...
V-254491 Windows Server 2022 Access Credential Manager as a...
V-254492 Windows Server 2022 Act as part of the operating s...
V-254493 Windows Server 2022 Allow log on locally user righ...
V-254494 Windows Server 2022 back up files and directories ...
V-254495 Windows Server 2022 create a pagefile user right m...
V-254496 Windows Server 2022 create a token object user rig...
V-254497 Windows Server 2022 create global objects user rig...
V-254498 Windows Server 2022 create permanent shared object...
V-254499 Windows Server 2022 create symbolic links user rig...
V-254500 Windows Server 2022 debug programs user right must...
V-254501 Windows Server 2022 force shutdown from a remote s...
V-254502 Windows Server 2022 generate security audits user ...
V-254503 Windows Server 2022 impersonate a client after aut...
V-254504 Windows Server 2022 increase scheduling priority: ...
V-254505 Windows Server 2022 load and unload device drivers...
V-254506 Windows Server 2022 lock pages in memory user righ...
V-254507 Windows Server 2022 manage auditing and security l...
V-254508 Windows Server 2022 modify firmware environment va...
V-254509 Windows Server 2022 perform volume maintenance tas...
V-254510 Windows Server 2022 profile single process user ri...
V-254511 Windows Server 2022 restore files and directories ...
V-254512 Windows Server 2022 take ownership of files or oth...
V-271426 Windows Server 2022 must be configured for certifi...
V-271427 Windows Server 2022 must be configured for name-ba...
V-278942 Windows Server 2022 must be configured to audit fi...
V-278943 Windows Server 2022 must be configured to audit fi...
V-278944 Windows Server 2022 must be configured to audit ha...
V-278945 Windows Server 2022 must be configured to audit ha...
V-278946 Windows Server 2022 must be configured to audit re...
V-278947 Windows Server 2022 must be configured to audit re...
V-278948 Windows Server 2022 must be configured to audit se...
V-278949 Windows Server 2022 must be configured to audit se...

Vulnerability Details

Click a Vuln ID on the left to view details.

Status & Comments

Select a finding to edit.

CUI