This section covers:
| • | |
| • | |
| • | Accounts: Limit local account use of blank passwords to console logon only |
| • | |
| • |
| • | |
| • | |
| • | Audit: Shut down system immediately if unable to log security audits |
| • | |
| • | |
| • | |
| • | Devices: Restrict CD-ROM access to locally logged-on user only |
| • | Devices: Restrict floppy access to locally logged-on user only |
| • |
| • | Domain controller: Allow server operators to schedule tasks (domain controllers only) |
| • |
| • | |
| • | Recovery console: Allow floppy copy and access to all drives and all folders |
| • | Shutdown: Allow system to be shut down without having to log on |
| • |
| • | System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing |