Adobe Acrobat Reader DC Classic Track Security Technical Implementation Guide
Pick two releases to diff their requirements.
Open a previous version of this STIG.
Digest of Updates +26 −26
Comparison against the immediately-prior release (V1R5). Rule matching uses the Group Vuln ID. Content-change detection compares the rule’s description, check, and fix text after stripping inline markup — cosmetic-only edits aren’t flagged.
Added rules 26
- V-213141 Medium Adobe Reader DC must enable Enhanced Security in a Standalone Application.
- V-213142 Medium Adobe Reader DC must enable Enhanced Security in a Browser.
- V-213143 Medium Adobe Reader DC must enable Protected Mode.
- V-213144 Medium Adobe Reader DC must enable Protected View.
- V-213145 Medium Adobe Reader DC must Block Websites.
- V-213146 Medium Adobe Reader DC must block access to Unknown Websites.
- V-213147 Medium Adobe Reader DC must prevent opening files other than PDF or FDF.
- V-213148 Medium Adobe Reader DC must block Flash Content.
- V-213149 Low Adobe Reader DC must disable the ability to change the Default Handler.
- V-213150 Low Adobe Reader DC must disable the Adobe Send and Track plugin for Outlook.
- V-213151 Medium Adobe Reader DC must disable all service access to Document Cloud Services.
- V-213152 Medium Adobe Reader DC must disable Cloud Synchronization.
- V-213153 Low Adobe Reader DC must disable the Adobe Repair Installation.
- V-213154 Medium Adobe Reader DC must disable 3rd Party Web Connectors.
- V-213155 Low Adobe Reader DC must disable Acrobat Upsell.
- V-213156 Low Adobe Reader DC must disable Adobe Send for Signature.
- V-213157 Medium Adobe Reader DC must disable access to Webmail.
- V-213158 Medium Adobe Reader DC must disable Online SharePoint Access.
- V-213159 Low Adobe Reader DC must disable the Adobe Welcome Screen.
- V-213160 Low Adobe Reader DC must disable Service Upgrades.
- V-213161 Medium Adobe Reader DC must disable the ability to add Trusted Files and Folders.
- V-213162 Medium Adobe Reader DC must disable the ability to specify Host-Based Privileged Locations.
- V-213163 Low Adobe Reader DC must disable periodical uploading of European certificates.
- V-213164 Low Adobe Reader DC must disable periodical uploading of Adobe certificates.
- V-213165 High Unsupported version of Adobe Acrobat Reader DC Classic must be uninstalled.
- V-213166 Medium Adobe Reader DC must enable FIPS mode.
Removed rules 26
- V-65729 Medium Adobe Reader DC must enable Enhanced Security in a Standalone Application.
- V-65735 Medium Adobe Reader DC must enable Enhanced Security in a Browser.
- V-65737 Medium Adobe Reader DC must enable Protected Mode.
- V-65739 Medium Adobe Reader DC must enable Protected View.
- V-65767 Medium Adobe Reader DC must Block Websites.
- V-65769 Medium Adobe Reader DC must block access to Unknown Websites.
- V-65771 Medium Adobe Reader DC must prevent opening files other than PDF or FDF.
- V-65775 Medium Adobe Reader DC must block Flash Content.
- V-65777 Low Adobe Reader DC must disable the ability to change the Default Handler.
- V-65779 Low Adobe Reader DC must disable the Adobe Send and Track plugin for Outlook.
- V-65781 Medium Adobe Reader DC must disable all service access to Document Cloud Services.
- V-65783 Medium Adobe Reader DC must disable Cloud Synchronization.
- V-65785 Low Adobe Reader DC must disable the Adobe Repair Installation.
- V-65787 Medium Adobe Reader DC must disable 3rd Party Web Connectors.
- V-65789 Low Adobe Reader DC must disable Adobe Send for Signature.
- V-65791 Medium Adobe Reader DC must disable access to Webmail.
- V-65793 Medium Adobe Reader DC must disable Online SharePoint Access.
- V-65795 Low Adobe Reader DC must disable the Adobe Welcome Screen.
- V-65797 Low Adobe Reader DC must disable Service Upgrades.
- V-65801 Medium Adobe Reader DC must disable the ability to add Trusted Files and Folders.
- V-65803 Medium Adobe Reader DC must disable the ability to specify Host-Based Privileged Locations.
- V-65807 Low Adobe Reader DC must disable periodical uploading of European certificates.
- V-65809 Low Adobe Reader DC must disable periodical uploading of Adobe certificates.
- V-65811 High Adobe Reader DC must have the latest Security-related Software Updates installed.
- V-65813 Medium Adobe Reader DC must enable FIPS mode.
- V-65815 Low Adobe Reader DC must disable Acrobat Upsell.
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001166
- Version
- ARDC-CL-000005
- Vuln IDs
-
- V-213141
- V-65729
- Rule IDs
-
- SV-213141r557349_rule
- SV-80219
Checks: C-14377r276566_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bEnhancedSecurityStandalone Type: REG_DWORD Value: 1 If the value for bEnhancedSecurityStandalone is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14375r276567_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bEnhancedSecurityStandalone Type: REG_DWORD Value: 1
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001170
- Version
- ARDC-CL-000010
- Vuln IDs
-
- V-213142
- V-65735
- Rule IDs
-
- SV-213142r557349_rule
- SV-80225
Checks: C-14378r276569_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bEnhancedSecurityInBrowser Type: REG_DWORD Value: 1 If the value for bEnhancedSecurityInBrowser is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14376r276570_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bEnhancedSecurityInBrowser Type: REG_DWORD Value: 1
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001166
- Version
- ARDC-CL-000015
- Vuln IDs
-
- V-213143
- V-65737
- Rule IDs
-
- SV-213143r557349_rule
- SV-80227
Checks: C-14379r276572_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bProtectedMode Type: REG_DWORD Value: 1 If the value for bProtectedMode is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14377r276573_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bProtectedMode Type: REG_DWORD Value: 1
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001170
- Version
- ARDC-CL-000020
- Vuln IDs
-
- V-213144
- V-65739
- Rule IDs
-
- SV-213144r557349_rule
- SV-80229
Checks: C-14380r276575_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: iProtectedView Type: REG_DWORD Value: 2 If the value for iProtectedView is not set to “2” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14378r276576_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: iProtectedView Type: REG_DWORD Value: 2
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001166
- Version
- ARDC-CL-000025
- Vuln IDs
-
- V-213145
- V-65767
- Rule IDs
-
- SV-213145r557349_rule
- SV-80257
Checks: C-14381r276578_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cDefaultLaunchURLPerms Value Name: iURLPerms Type: REG_DWORD Value: 1 Value: 0 – only with a documented ISSO risk acceptance If the value for iURLPerms is set to “0” and a documented ISSO risk acceptance approving access to the websites is provided, this is not a finding. If the value for “iURLPerms” is not set to “1” and “Type” configured to “REG_DWORD” or does not exist, this is a finding.
Fix: F-14379r276579_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cDefaultLaunchURLPerms Value Name: iURLPerms Type: REG_DWORD Value: 1 If configuring the system to allow access to websites, obtain documented ISSO approvals and risk acceptance and set “iURLPerms” to “0”.
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001170
- Version
- ARDC-CL-000030
- Vuln IDs
-
- V-213146
- V-65769
- Rule IDs
-
- SV-213146r557349_rule
- SV-80259
Checks: C-14382r276581_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cDefaultLaunchURLPerms Value Name: iUnknownURLPerms Type: REG_DWORD Value: 3 If the value for iUnknownURLPerms is not set to “3” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14380r276582_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cDefaultLaunchURLPerms Value Name: iUnknownURLPerms Type: REG_DWORD Value: 3
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001166
- Version
- ARDC-CL-000035
- Vuln IDs
-
- V-213147
- V-65771
- Rule IDs
-
- SV-213147r557349_rule
- SV-80261
Checks: C-14383r276584_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: iFileAttachmentPerms Type: REG_DWORD Value: 1 If the value for iFileAttachmentPerms is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14381r276585_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: iFileAttachmentPerms Type: REG_DWORD Value: 1
- RMF Control
- SC-18
- Severity
- M
- CCI
- CCI-001166
- Version
- ARDC-CL-000045
- Vuln IDs
-
- V-213148
- V-65775
- Rule IDs
-
- SV-213148r557349_rule
- SV-80265
Checks: C-14384r276587_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bEnableFlash Type: REG_DWORD Value: 0 If the value for bEnableFlash is not set to “0” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14382r276588_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bEnableFlash Type: REG_DWORD Value: 0
- RMF Control
- CM-5
- Severity
- L
- CCI
- CCI-001499
- Version
- ARDC-CL-000050
- Vuln IDs
-
- V-213149
- V-65777
- Rule IDs
-
- SV-213149r557349_rule
- SV-80267
Checks: C-14385r276590_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bDisablePDFHandlerSwitching Type: REG_DWORD Value: 1 If the value for bDisablePDFHandlerSwitching is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14383r276591_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bDisablePDFHandlerSwitching Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- L
- CCI
- CCI-000381
- Version
- ARDC-CL-000055
- Vuln IDs
-
- V-213150
- V-65779
- Rule IDs
-
- SV-213150r557349_rule
- SV-80269
Checks: C-14386r276593_chk
Verify the following registry configuration: Note: The Key Name "cCloud" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cCloud Value Name: bAdobeSendPluginToggle Type: REG_DWORD Value: 1 If the value for bAdobeSendPluginToggle is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding. Admin Template path: Computer Configuration > Administrative Templates > Adobe Reader DC Classic > Preferences > 'Send and Track plugin' must be set to 'Disabled'. This policy setting requires the installation of the AcrobatDCClassic custom templates included with the STIG package. "AcrobatDCClassic.admx" and "AcrobatDCClassic.adml" must be copied to the \Windows\PolicyDefinitions and \Windows\PolicyDefinitions\en-US directories respectively.
Fix: F-14384r276594_fix
Configure the following registry value: Note: The Key Name "cCloud" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cCloud Value Name: bAdobeSendPluginToggle Type: REG_DWORD Value: 1 Configure the policy value for Computer Configuration > Administrative Templates > Adobe Reader DC Classic > Preferences > 'Send and Track plugin' to 'Disabled'. This policy setting requires the installation of the AcrobatDCClassic custom templates included with the STIG package. "AcrobatDCClassic.admx" and "AcrobatDCClassic.adml" must be copied to the \Windows\PolicyDefinitions and \Windows\PolicyDefinitions\en-US directories respectively.
- RMF Control
- CM-7
- Severity
- M
- CCI
- CCI-000381
- Version
- ARDC-CL-000060
- Vuln IDs
-
- V-213151
- V-65781
- Rule IDs
-
- SV-213151r557349_rule
- SV-80271
Checks: C-14387r276596_chk
Verify the following registry configuration: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bToggleAdobeDocumentServices Type: REG_DWORD Value: 1 If the value for bToggleAdobeDocumentServices is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14385r276597_fix
Configure the following registry value: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bToggleAdobeDocumentServices Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- M
- CCI
- CCI-000381
- Version
- ARDC-CL-000065
- Vuln IDs
-
- V-213152
- V-65783
- Rule IDs
-
- SV-213152r557349_rule
- SV-80273
Checks: C-14388r276599_chk
Verify the following registry configuration: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bTogglePrefsSync Type: REG_DWORD Value: 1 If the value for bTogglePrefSync is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14386r276600_fix
Configure the following registry value: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bTogglePrefsSync Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- L
- CCI
- CCI-000381
- Version
- ARDC-CL-000070
- Vuln IDs
-
- V-213153
- V-65785
- Rule IDs
-
- SV-213153r557349_rule
- SV-80275
Checks: C-14389r276602_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: For 32 bit: HKEY_LOCAL_MACHINE\Software\Adobe\Acrobat Reader\2015\Installer For 64 bit: HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Adobe\Acrobat Reader\2015\Installer Value Name: DisableMaintenance Type: REG_DWORD Value: 1 If the value for DisableMaintenance is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14387r276603_fix
Configure the following registry value: For 32 bit: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Adobe\Acrobat Reader\2015\Installer For 64 bit: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \SOFTWARE\Wow6432Node\Adobe\Acrobat Reader\2015\Installer Value Name: DisableMaintenance Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- M
- CCI
- CCI-000381
- Version
- ARDC-CL-000075
- Vuln IDs
-
- V-213154
- V-65787
- Rule IDs
-
- SV-213154r557349_rule
- SV-80277
Checks: C-14390r276605_chk
Verify the following registry configuration: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bToggleWebConnectors Type: REG_DWORD Value: 1 If the value for bToggleWebConnectors is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14388r276606_fix
Configure the following registry value: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bToggleWebConnectors Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- L
- CCI
- CCI-000381
- Version
- ARDC-CL-000080
- Vuln IDs
-
- V-213155
- V-65815
- Rule IDs
-
- SV-213155r557349_rule
- SV-80305
Checks: C-14391r276608_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bAcroSuppressUpsell Type: REG_DWORD Value: 1 If the value for bAcroSuppressUpsell is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14389r276609_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bAcroSuppressUpsell Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- L
- CCI
- CCI-000381
- Version
- ARDC-CL-000085
- Vuln IDs
-
- V-213156
- V-65789
- Rule IDs
-
- SV-213156r557349_rule
- SV-80279
Checks: C-14392r276611_chk
Verify the following registry configuration: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bToggleAdobeSign Type: REG_DWORD Value: 1 If the value for bToggleAdobeSign is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14390r276612_fix
Configure the following registry value: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bToggleAdobeSign Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- M
- CCI
- CCI-000381
- Version
- ARDC-CL-000090
- Vuln IDs
-
- V-213157
- V-65791
- Rule IDs
-
- SV-213157r557349_rule
- SV-80281
Checks: C-14393r276614_chk
Verify the following registry configuration: Note: The Key Name "cWebmailProfiles" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cWebmailProfiles Value Name: bDisableWebmail Type: REG_DWORD Value: 1 If the value for bDisableWebmail is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14391r276615_fix
Configure the following registry value: Note: The Key Name "cWebmailProfiles" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cWebmailProfiles Value Name: bDisableWebmail Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- M
- CCI
- CCI-000381
- Version
- ARDC-CL-000100
- Vuln IDs
-
- V-213158
- V-65793
- Rule IDs
-
- SV-213158r557349_rule
- SV-80283
Checks: C-14394r276617_chk
Verify the following registry configuration: If configured to an approved DoD SharePoint Server, this is NA. Note: The Key Name "cSharePoint" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cSharePoint Value Name: bDisableSharePointFeatures Type: REG_DWORD Value: 1 If the value for bDisableSharePointFeatures is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14392r276618_fix
Configure the following registry value: Note: The Key Name "cSharePoint" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cSharePoint Value Name: bDisableSharePointFeatures Type: REG_DWORD Value: 1
- RMF Control
- CM-7
- Severity
- L
- CCI
- CCI-000381
- Version
- ARDC-CL-000115
- Vuln IDs
-
- V-213159
- V-65795
- Rule IDs
-
- SV-213159r557349_rule
- SV-80285
Checks: C-14395r276620_chk
Verify the following registry configuration: Note: The Key Name "cWelcomeScreen" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cWelcomeScreen Value Name: bShowWelcomeScreen Type: REG_DWORD Value: 0 If the value for bShowWelcomeScreen is not set to “0” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14393r276621_fix
Configure the following registry value: Note: The Key Name "cWelcomeScreen" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cWelcomeScreen Value Name: bShowWelcomeScreen Type: REG_DWORD Value: 0
- RMF Control
- CM-7
- Severity
- L
- CCI
- CCI-000381
- Version
- ARDC-CL-000120
- Vuln IDs
-
- V-213160
- V-65797
- Rule IDs
-
- SV-213160r557349_rule
- SV-80287
Checks: C-14396r276623_chk
Verify the following registry configuration: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bUpdater Type: REG_DWORD Value: 0 If the value for bUpdater is not set to “0” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14394r276624_fix
Configure the following registry value: Note: The Key Name "cServices" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown\cServices Value Name: bUpdater Type: REG_DWORD Value: 0
- RMF Control
- CM-5
- Severity
- M
- CCI
- CCI-001813
- Version
- ARDC-CL-000315
- Vuln IDs
-
- V-213161
- V-65801
- Rule IDs
-
- SV-213161r557349_rule
- SV-80291
Checks: C-14397r276626_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bDisableTrustedFolders Type: REG_DWORD Value: 1 If the value for bDisableTrustedFolders is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14395r276627_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bDisableTrustedFolders Type: REG_DWORD Value: 1
- RMF Control
- CM-5
- Severity
- M
- CCI
- CCI-001813
- Version
- ARDC-CL-000320
- Vuln IDs
-
- V-213162
- V-65803
- Rule IDs
-
- SV-213162r557349_rule
- SV-80293
Checks: C-14398r276629_chk
Verify the following registry configuration: Utilizing the Registry Editor, navigate to the following: HKEY_LOCAL_MACHINE\Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bDisableTrustedSites Type: REG_DWORD Value: 1 If the value for bDisableTrustedSites is not set to “1” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14396r276630_fix
Configure the following registry value: Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Adobe\Acrobat Reader\2015\FeatureLockDown Value Name: bDisableTrustedSites Type: REG_DWORD Value: 1
- RMF Control
- SC-23
- Severity
- L
- CCI
- CCI-002470
- Version
- ARDC-CL-000330
- Vuln IDs
-
- V-213163
- V-65807
- Rule IDs
-
- SV-213163r557349_rule
- SV-80297
Checks: C-14399r276632_chk
Verify the following registry configuration: Note: The Key Names "cDigSig" and "cEUTLDownload" are not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\2015\Security\cDigSig\cEUTLDownload Value Name: bLoadSettingsFromURL Type: REG_DWORD Value: 0 If the value for bLoadSettingsFromURL is not set to “0” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14397r276633_fix
Configure the following registry value: Note: The Key Names "cDigSig" and "cEUTLDownload" are not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_CURRENT_USER Registry Path: \Software\Adobe\Acrobat Reader\2015\Security\cDigSig\cEUTLDownload Value Name: bLoadSettingsFromURL Type: REG_DWORD Value: 0
- RMF Control
- SC-23
- Severity
- L
- CCI
- CCI-002470
- Version
- ARDC-CL-000335
- Vuln IDs
-
- V-213164
- V-65809
- Rule IDs
-
- SV-213164r557349_rule
- SV-80299
Checks: C-14400r276635_chk
Verify the following registry configuration: Note: The Key Names "cDigSig" and "cAdobeDownload" are not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\2015\Security\cDigSig\cAdobeDownload Value Name: bLoadSettingsFromURL Type: REG_DWORD Value: 0 If the value for bLoadSettingsFromURL is not set to “0” and Type configured to REG_DWORD or does not exist, then this is a finding.
Fix: F-14398r276636_fix
Configure the following registry value: Note: The Key Names "cDigSig" and "cAdobeDownload" are not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_CURRENT_USER Registry Path: \Software\Adobe\Acrobat Reader\2015\Security\cDigSig\cAdobeDownload Value Name: bLoadSettingsFromURL Type: REG_DWORD Value: 0
- RMF Control
- SI-2
- Severity
- H
- CCI
- CCI-002605
- Version
- ARDC-CL-000340
- Vuln IDs
-
- V-213165
- V-65811
- Rule IDs
-
- SV-213165r557349_rule
- SV-80301
Checks: C-14401r548542_chk
Review the applications that are installed on the system. Verify Adobe Acrobat Reader DC Classic is not installed. If Adobe Acrobat Reader DC Classic is installed, this is a finding.
Fix: F-14399r548543_fix
Remove/uninstall the Adobe Acrobat Reader DC application. Replace with a supported Acrobat version if required.
- RMF Control
- SC-13
- Severity
- M
- CCI
- CCI-002450
- Version
- ARDC-CL-000345
- Vuln IDs
-
- V-213166
- V-65813
- Rule IDs
-
- SV-213166r557349_rule
- SV-80303
Checks: C-14402r276641_chk
Verify the following registry configuration: Note: The Key Names "bFIPSMode" is not created by default in the Adobe Reader DC install and must be created. Utilizing the Registry Editor, navigate to the following: HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\2015\AVGeneral Value Name: bFIPSMode Type: REG_DWORD Value: 1 If the value for bFIPSMode is not set to “1” and Type configured to REG_DWORD does not exist, then this is a finding.
Fix: F-14400r276642_fix
Configure the following registry value: Note: The Key Names "bFIPSMode" is not created by default in the Adobe Reader DC install and must be created. Registry Hive: HKEY_CURRENT_USER Registry Path: \Software\Adobe\Acrobat Reader\2015\AVGeneral Value Name: bFIPSMode Type: REG_DWORD Value: 1