Windows 10: Windows Defender disabled features after installing the Security Compliance Toolkit and...

Discus and support Windows Defender disabled features after installing the Security Compliance Toolkit and... in Windows 10 Software and Apps to solve the problem; Hello,When trying to secure my computer, I found an article suggesting to install the Windows security baseline found here:... Discussion in 'Windows 10 Software and Apps' started by a⁄x, Mar 19, 2024.

  1. a⁄x Win User

    Windows Defender disabled features after installing the Security Compliance Toolkit and...


    Hello,When trying to secure my computer, I found an article suggesting to install the Windows security baseline found here: https://www.microsoft.com/en-us/download/details.aspx?id=55319Now, this is one of the worst things anyone can do to their personal computer. Most of the Settings are now greyed out, I cannot use any aps on localhost or even run PowerShell scripts.Is there any easy way to reverse all the changes done by the Security Baseline?Thanks.

    :)
     
    a⁄x, Mar 19, 2024
    #1
  2. Tenforo Active Member

    Microsoft Security Compliance Toolkit for windows Server 2016

    Hi,

    I'm trying to make my winServer2016 compliance with the CIS benchmark (CIS Benchmarks™), I have installed Microsoft Security Compliance Toolkit for Windows Server 2016 and run the Script in this path
    .....\Windows-10-RS1-and-Server-2016-Security-Baseline\Local_Script\Member_Server_Install.cmd, which will get group Policy configuration template from the
    GPOs Folder in the same path and apply it to the local policy as a member server.

    After that what I'm expecting is to have all the points of CIS Benchmark being configured on the server as Microsoft claims here
    (https://docs.microsoft.com/en-us/microsoft-365/compliance/offering-cis-benchmark?view=o365-worldwide) that the
    Microsoft Security Compliance Toolkit is covering CIS Benchmark. for checking what points of CIS Benchmark V1.1.0 have been pointed or not, I used an auditing framework called Inspect
    (Install Chef InSpec) which will do automated audit check on my windows server. Inspec needs Control auditing files to check against and validated the implemented points from those are not. for that, you can clone the following
    repository (GitHub - dev-sec/windows-baseline: DevSec Windows Baseline - InSpec Profile) and use it with Inspec to make the auditing process
    (CISv1.1.0 same as one used by Security Compliance Toolkit for Windows Server 2016), and the command can be run as follows :

    inspec exec Path\To\Windows\Base\Line\Auditing\repo


    It will show you Results as follows :


    Windows Defender disabled features after installing the Security Compliance Toolkit and... b8c9d081-f7ce-4fe9-b442-113074790539?upload=true.png


    as seen the audit shows only 194 successful controls while there are 149 failures!

    I tried to figure what is the problem and why the Security Compliance Toolkit did not apply all Secure configurations, noting that the logs of the Security Compliance toolkit did not show any error !!

    so what is behind this, and how to make sure that the Security Compliance Toolkit works as expected with configuring most of the failed points from the audit output?
     
    Tenforo, Mar 19, 2024
    #2
  3. Murad Almomani, Mar 19, 2024
    #3
  4. r0x0t Win User

    Windows Defender disabled features after installing the Security Compliance Toolkit and...

    r0x0t, Mar 19, 2024
    #4
Thema:

Windows Defender disabled features after installing the Security Compliance Toolkit and...

Loading...
  1. Windows Defender disabled features after installing the Security Compliance Toolkit and... - Similar Threads - Defender disabled features

  2. why there is an attempt to disable the Microsoft Defender Antivirus security feature...

    in Windows 10 Gaming
    why there is an attempt to disable the Microsoft Defender Antivirus security feature...: During an update of Windows 10 I keep getting alerts in Defender that there are attempts to disable the DisableRealtimeMonitoring and DisableAntiSpyware registries.The command line used is : Reg Import...
  3. why there is an attempt to disable the Microsoft Defender Antivirus security feature...

    in Windows 10 Software and Apps
    why there is an attempt to disable the Microsoft Defender Antivirus security feature...: During an update of Windows 10 I keep getting alerts in Defender that there are attempts to disable the DisableRealtimeMonitoring and DisableAntiSpyware registries.The command line used is : Reg Import...
  4. why there is an attempt to disable the Microsoft Defender Antivirus security feature...

    in Windows 10 Installation and Upgrade
    why there is an attempt to disable the Microsoft Defender Antivirus security feature...: During an update of Windows 10 I keep getting alerts in Defender that there are attempts to disable the DisableRealtimeMonitoring and DisableAntiSpyware registries.The command line used is : Reg Import...
  5. Windows Defender disabled features after installing the Security Compliance Toolkit and...

    in Windows 10 Gaming
    Windows Defender disabled features after installing the Security Compliance Toolkit and...: Hello,When trying to secure my computer, I found an article suggesting to install the Windows security baseline found here: https://www.microsoft.com/en-us/download/details.aspx?id=55319Now, this is one of the worst things anyone can do to their personal computer. Most of the...
  6. Microsoft Security Compliance Toolkit for windows Server 2016

    in AntiVirus, Firewalls and System Security
    Microsoft Security Compliance Toolkit for windows Server 2016: Hi, I'm trying to make my winServer2016 compliance with the CIS benchmark https://www.cisecurity.org/cis-benchmarks/, I have installed Microsoft Security Compliance Toolkit for Windows Server 2016 and run the Script in this...
  7. Microsoft Security Compliance Toolkit Security Baseline Challenge Question

    in AntiVirus, Firewalls and System Security
    Microsoft Security Compliance Toolkit Security Baseline Challenge Question: I have applied Microsoft security baseline to Windows 10 IoT. Can anyone please provide a workaround or a solution to revert back the system to previous/original state? Any way which can basically revert the system + group policy + registry settings back to the way it was...
  8. Microsoft Security Compliance Toolkit Security Baseline Challenge Question

    in AntiVirus, Firewalls and System Security
    Microsoft Security Compliance Toolkit Security Baseline Challenge Question: I have applied Microsoft security baseline to Windows 10 IoT. Can anyone please provide a workaround or a solution to revert back the system to previous/original state? Any kind of way which can basically revert the system or group policy settings back to the way it was...
  9. security and compliance center quarantine

    in AntiVirus, Firewalls and System Security
    security and compliance center quarantine: What happened to the security and compliance center quarantine. I no longer can find my quarantined e-mails. https://answers.microsoft.com/en-us/protect/forum/all/security-and-compliance-center-quarantine/2aa2c9ad-38c5-4e0d-b3ea-750302c127d9
  10. AutoLogon is disabled after feature pack install

    in Windows 10 Customization
    AutoLogon is disabled after feature pack install: After windows 10 feature pack 1709 is applied, AutoLogon is disabled. This is happening going from 1607 to 1709 on all machines using Autologon. Is this a function of all feature packs? Is there a way of re-enabling without manually touching all our machines? We can manually...