Windows Bridge Network Connection
Description
This test verifies that the endpoint attempting to connect to the network does not have a bridged
network connection present. A bridged network connection allows the connecting endpoint to
transparently send traffic to and from another network. An example use of this type of connection
would be to bridge a high-speed cellular network connection in and out of the local network. A bridged
network connection poses a significant security risk.
Test Properties
Any endpoint which has a Windows bridge Network Connection will fail this test.
How Does this Affect Me?
Using network bridges can be useful in some environments; however, they also create a security risk.
What Do I Need to Do?
Do not use network bridges.
The following articles describe bridge networking:
http://technet2.microsoft.com/windowsserver/en/library/df594316-cd92-4c38-9773-
4c6d74e02a431033.mspx?mfr=true
http://www.microsoft.com/resources/documentation/windows/xp/all/proddocs/en-us/
hnw_understanding_bridge.mspx?mfr=true
http://www.microsoft.com/windowsxp/using/networking/expert/crawford_02april22.mspx
Windows Security Policy
Description
This test verifies that the endpoint attempting to connect to your system follows the Windows local
security policy best practices.
Test Properties
Select the Windows local security policy options you want to require on your network.
Enable "Network access: Do not allow storage of credentials or .NET Passports for network
●
authentication"
Disable "Network access: Let Everyone permissions apply to anonymous users"
●
Enable "Accounts: Limit local account use of blank passwords to console logon only"
●
Sentriant AG Users' Guide, Version 5.0
Tests Help
359