National Institute of Standards and Technology (NIST) - Information technology Laboratory (ITL)

The United States Government Configuration Baseline (USGCB) - Windows Vista Content

Warning Notice

Do not attempt to implement any of the settings without first testing them in a non-operational environment. These recommendations have only been tested on Windows 7 Ultimate 32-bit, Windows 7 Ultimate 64-bit, Windows 7 Enterprise x86, and Windows 7 Enterprise x64. These settings may be applicable to other Windows systems and service packs; however, NIST has not tested other Windows based systems with these settings. Please see the National Checklist Program (NCP) website for configuration guides related to other Windows Based systems and applications.

The draft download packages contain recommended security settings; they are not meant to replace well-structured policy or sound judgment. Furthermore, these recommendations do not address site-specific configuration issues. Care must be taken when implementing these settings to address local operational and policy concerns.

These recommendations were developed at the National Institute of Standards and Technology, which collaborated with DoD and Microsoft to produce the Windows 7, Windows 7 Firewall, Internet Explorer 8 USGCB. Pursuant to title 17 Section 105 of the United States Code, these recommendations are not subject to copyright protection and are in the public domain. NIST assumes no responsibility whatsoever for their use by other parties, and makes no guarantees, expressed or implied, about their quality, reliability, or any other characteristic. We would appreciate acknowledgement if the recommendations are used.


Download Packages

The following table provides the downloads for the Windows Vista USGCB Content. VHDs are also available to use for testing. Additional information can be found in the FAQ.

Documentation GPOs SCAP Content CCE to 800-53 Mappings
  • USGCB Major Version 1.2.x.0 Settings
    Please refer to the top-level Microsoft Content Page for the listing of all USGCB settings and associated hash values.
  • USGCB Major Version 1.2.x.0 Known Issues
    Please refer to the top-level Microsoft Content Page for the listing of all known issues relating to USGCB content and associated hash values.
  • USGCB/FDCC Comparison for Windows - 2010.11.09
    sha1
    6920E757F12E00ED58E39E27FCB2F79B35BBFF8F
    sha256
    7659F2007E3A0286EBCC344885F68540A4B93849628A0603382F28AE74110E18
  • USGCB Windows Vista GPOs - 2011.11.10
    sha1
    A6886CC6844676232EFF0EF063F66ACE330D9CFC
    sha256
    6253EE0C5DBE936EFA278458B00FF1F2113CD2C35D587C901E1690CA011FE244
  • SCAP 1.2 (Oval 5.10)

    Windows Vista Content - 2012.11.28
    sha1
    369B9234A7D5E32BCDA4C1017BC3C7AB67A948F3
    sha256
    953D763C288B671BE2EE0A7E0321563E0BDED966B142E646CE8C758CE52EE796
  • SCAP 1.0 (Oval 5.4)

    Windows Vista Content - 2013.04.29
    sha1
    9BB42E47720E96E8C91418611A1C7D41539C7451
    sha256
    5644F7517D3C5F3669250F01F569C96BE6CC04A136F935C5FF800BAD7808FD48
  • SCAP 1.0 (Oval 5.3)

    Windows Vista Content - 2013.04.29
    sha1
    39B2E5A63CDAACE785C3C2A8E8E3B55B5CA9B264
    sha256
    135C8BD19702B4AB50CBD43EF5950DF0FBBC05B5BFD52A25CF430193D1E63534
  • Windows Vista SCAP Patch Content - 2013.04.29
    sha1
    27AE9D6F8C482D39B2FDF6A4270368AF0709F585
    sha256
    7997AAEA85D64FCF32CA2351F7E5C56BE90F042C9ECE07670F56E6D91F54FD7E

Update History
Date Documentation GPOs SCAP Content CCE to 800-53 Mappings
April 29, 2013 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
March 21, 2013 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
February 25, 2013 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
January 22, 2013 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
December 28, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
December 05, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
November 28, 2012 No changes No changes SCAP 1.2 (Oval 5.10) content signature updated; no other change to content. No changes
October 31, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
August 17, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
July 30, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
June 15, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. No changes
May 21, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted. SCAP 1.2 (Oval 5.10) content signature updated; no change to content No changes
April 23, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted No changes
March 22, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted No changes
February 23, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted No changes
January 23, 2012 No changes No changes USGCB major version 2.0.x.0 SCAP content posted No changes
November 14, 2011 No changes No changes USGCB major version 2.0.x.0 SCAP content posted No changes
November 10, 2011 No changes USGCB GPOs posted No changes No changes
October 17, 2011 No changes No changes USGCB major version 2.0.x.0 SCAP content posted No changes
October 05, 2011 No changes No changes No changes National Checklist Program's Machine-readable CCE to 800-53 Mappings linked
September 21, 2011 USGCB major version 1.2.x.0 Settings and Known Issues posted No changes USGCB major version 2.0.x.0-Alpha-Candidate SCAP content posted No changes