This is not the latest version of the STIG. This is provided for archival purposes. See the latest STIG.

Windows Server 2019 title for legal banner dialog box must be configured with the appropriate text.

STIG ID: WN19-SO-000140  |  SRG: SRG-OS-000023-GPOS-00006 |  Severity: low (CAT III)  |  CCI: CCI-000048,CCI-001384,CCI-001385,CCI-001386,CCI-001387,CCI-001388 |  Vulnerability Id: V-205632

Vulnerability Discussion

Failure to display the logon banner prior to a logon attempt will negate legal proceedings resulting from unauthorized access to system resources.

Satisfies: SRG-OS-000023-GPOS-00006, SRG-OS-000228-GPOS-00088

Check

If the following registry value does not exist or is not configured as specified, this is a finding:

Registry Hive: HKEY_LOCAL_MACHINE
Registry Path: \SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\

Value Name: LegalNoticeCaption

Value Type: REG_SZ
Value: Refer to message title options below

"DoD Notice and Consent Banner", "US Department of Defense Warning Statement", or an organization-defined equivalent.

If an organization-defined title is used, it can in no case contravene or modify the language of the banner text required in WN19-SO-000130.

Automated tools may only search for the titles defined above. If an organization-defined title is used, a manual review will be required.

Fix

Configure the policy value for Computer Configuration >> Windows Settings >> Security Settings >> Local Policies >> Security Options >> "Interactive Logon: Message title for users attempting to log on" to "DoD Notice and Consent Banner", "US Department of Defense Warning Statement", or an organization-defined equivalent.

If an organization-defined title is used, it can in no case contravene or modify the language of the message text required in WN19-SO-000130.