Resources/Baseline/MSFTSecBaselines_OptionalOverrides.json
|
[
{ "Source": 0, "KeyName": "SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Policies\\System", "ValueName": "LocalAccountTokenFilterPolicy", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 1, "FriendlyName": "LocalAccountTokenFilterPolicy-OptionalOverrides", "URL": "https://learn.microsoft.com/troubleshoot/windows-server/windows-security/user-account-control-and-remote-restriction#how-to-disable-uac-remote-restrictions", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 99 ], "ID": "019a8dfa-263a-7ea5-862e-ab88fe751f03" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\FVE", "ValueName": "RDVDenyCrossOrg", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 1, "FriendlyName": "RDVDenyCrossOrg-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3, 4 ], "ID": "019a8dfa-263a-7dce-8db0-825374c6d2a1" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\Windows\\CloudContent", "ValueName": "DisableWindowsConsumerFeatures", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 1, "FriendlyName": "DisableWindowsConsumerFeatures-OptionalOverrides", "URL": "https://learn.microsoft.com/windows/client-management/mdm/policy-csp-experience#allowwindowsconsumerfeatures", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3, 4 ], "ID": "019a8dfa-263b-716e-bc14-4b50f9fea225" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\Windows\\GameDVR", "ValueName": "AllowGameDVR", "Type": 4, "Size": 4, "Data": "AQAAAA==", "RegValue": "1", "Hive": 0, "PolicyAction": 1, "FriendlyName": "AllowGameDVR-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1 ], "ID": "019a8dfa-263b-7157-89d0-5af8eb4e23e1" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\Windows\\Network Connections", "ValueName": "NC_ShowSharedAccessUI", "Type": 4, "Size": 4, "Data": "AQAAAA==", "RegValue": "1", "Hive": 0, "PolicyAction": 1, "FriendlyName": "NC_ShowSharedAccessUI-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2 ], "ID": "019a8dfa-263b-7dc1-bfa1-e9dca92654a6" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\Windows\\Sudo", "ValueName": "Enabled", "Type": 4, "Size": 4, "Data": "IAAAAA==", "RegValue": " ", "Hive": 0, "PolicyAction": 1, "FriendlyName": "Enabled-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1 ], "ID": "019a8dfa-263b-762c-adf8-c61bb9a44ad1" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\Windows Defender", "ValueName": "HideExclusionsFromLocalAdmins", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 1, "FriendlyName": "HideExclusionsFromLocalAdmins-OptionalOverrides", "URL": "https://learn.microsoft.com/windows/client-management/mdm/defender-csp#configurationhideexclusionsfromlocaladmins", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2 ], "ID": "019a8dfa-263b-79e9-a3e3-60ee6d4f9baf" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\Windows NT\\Terminal Services", "ValueName": "fDisableCdm", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 1, "FriendlyName": "fDisableCdm-OptionalOverrides", "URL": "https://learn.microsoft.com/windows/client-management/mdm/policy-csp-remotedesktopservices#donotallowdriveredirection", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1 ], "ID": "019a8dfa-263b-7015-b548-7c6e09f9f18d" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\Windows NT\\Terminal Services", "ValueName": "fDisableClip", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 1, "FriendlyName": "fDisableClip-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1 ], "ID": "019a8dfa-263c-7c13-8f9f-891bb551f7ce" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\WindowsFirewall", "ValueName": "PolicyVersion", "Type": 4, "Size": 4, "Data": "IQIAAA==", "RegValue": "545", "Hive": 0, "PolicyAction": 0, "FriendlyName": "PolicyVersionOverride-OptionalOverrides", "URL": "https://learn.microsoft.com/en-us/openspecs/windows_protocols/ms-fasp/1da2ee70-a6ae-4f76-b08f-fdc25c77d8a0#Appendix_A_12", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3 ], "ID": "019a8dfa-263c-7921-a187-7a1c8b8a4f18" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\WindowsFirewall\\PrivateProfile", "ValueName": "DisableNotifications", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 0, "FriendlyName": "DisableNotificationsPrivateOverride-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3 ], "ID": "019a8dfa-263c-7aa5-8c02-b2003604f7da" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\WindowsFirewall\\PublicProfile", "ValueName": "AllowLocalPolicyMerge", "Type": 4, "Size": 4, "Data": "AQAAAA==", "RegValue": "1", "Hive": 0, "PolicyAction": 0, "FriendlyName": "AllowLocalPolicyMerge-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3 ], "ID": "019a8dfa-263c-7cb4-8ffa-3c36cf8cc2c5" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\WindowsFirewall\\PublicProfile", "ValueName": "AllowLocalIPsecPolicyMerge", "Type": 4, "Size": 4, "Data": "AQAAAA==", "RegValue": "1", "Hive": 0, "PolicyAction": 0, "FriendlyName": "AllowLocalIPsecPolicyMerge-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3 ], "ID": "019a8dfa-263c-706c-8b5a-4b5989db8a88" }, { "Source": 0, "KeyName": "SOFTWARE\\Policies\\Microsoft\\WindowsFirewall\\PublicProfile", "ValueName": "DisableNotifications", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 0, "FriendlyName": "DisableNotificationsPublicOverride-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3 ], "ID": "019a8dfa-263d-7737-8d92-29a17dfe3cf9" }, { "Source": 0, "KeyName": "System\\CurrentControlSet\\Policies\\Microsoft\\FVE", "ValueName": "RDVDenyWriteAccess", "Type": 4, "Size": 4, "Data": "AAAAAA==", "RegValue": "0", "Hive": 0, "PolicyAction": 1, "FriendlyName": "RDVDenyWriteAccess-OptionalOverrides", "URL": "", "Category": 0, "SubCategory": null, "DefaultRegValue": null, "DeviceIntents": [ 0, 1, 2, 3, 4 ], "ID": "019a8dfa-263d-78f4-bf2d-7ea336aac7a0" }, { "Source": 1, "KeyName": "Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\System", "ValueName": "ConsentPromptBehaviorUser", "Type": 4, "Size": 4, "Data": "AQAAAA==", "RegValue": "1", "Hive": 0, "PolicyAction": 0, "FriendlyName": "ConsentPromptBehaviorUser-UAC", "URL": "https://learn.microsoft.com/openspecs/windows_protocols/ms-gpsb/15f4f7b3-d966-4ff4-8393-cb22ea1c3a63", "Category": 7, "SubCategory": null, "DefaultRegValue": "3", "DeviceIntents": [ 0, 1, 2, 3, 4 ], "ID": "019b09c1-e25c-7d4f-9d03-afdcec167870" } ] |