Detailed benchmark information
I have reviewed several benchmarks, particularly those related to Windows Workstation and Windows Server. Overall, I found that most controls are well-defined and described in depth. However, I noticed that a few areas seem to be either missing or not fully covered—possibly due to limitations in automation.
Specifically, it would be beneficial to include more detailed guidance, including overviews and remediation steps (or sub-sections), for the following areas:
IP Security
Wired Network configurations
Public Key Policies
Software Restriction Policies
Providing additional context or structured remediation details for these categories would enhance completeness and usability.
Additionally, if possible, it would be helpful to include a basic checksum verification script as part of the benchmark resources to support integrity validation.
Comments: 1
Oldest
•
Newest
•
Most likes
•
Fewest likes
-
20 Apr
Chris Boldiston AdminThanks for your comments,
Can you please post your comment on the Windows Benchmark Community in Workbench - https://workbench.cisecurity.org/communities/2
That is the place where community discussion and consensus on benchmark recommendations are made.
Thanks