<?xml version="1.0" encoding="UTF-8"?>
<oval_definitions xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#windows windows-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>The OVAL Repository</oval:product_name>
    <oval:schema_version>5.6</oval:schema_version>
    <oval:timestamp>2009-11-20T04:31:07.931-05:00</oval:timestamp>
  </generator>
  <definitions>
    <definition id="oval:org.mitre.oval:def:5596" version="1" class="compliance">
      <metadata>
        <title>Verifies that SQL Server is running with a security Certificate</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This is intended to insure
          that SQL Server has a security certicate.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:52.245-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:20.700-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:17.286-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion comment="Checks for security certificate on Sql Server" test_ref="oval:org.mitre.oval:tst:8022"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5590" version="1" class="compliance">
      <metadata>
        <title>Verifies no Floppy Drives are installed</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This is intended to prevent
          data being transfered off secured machines via floppy drives.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:50.959-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:20.385-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:17.083-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion negate="true" comment="Checks for floppy drives" test_ref="oval:org.mitre.oval:tst:7622"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5585" version="1" class="compliance">
      <metadata>
        <title>Verifies there are no sharing of resources</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This is intended to prevent
          data being transfered off secured machines via a share.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:51.681-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:19.930-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:16.888-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion negate="true" comment="Checks for sharing" test_ref="oval:org.mitre.oval:tst:7908"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5492" version="1" class="compliance">
      <metadata>
        <title>Verifies that Anitvirus is installed</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This checks if an antivirus
          is installed. NON-WMI Complaint products needs to be manually added as ORs</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:52.618-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:15.463-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:15.941-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion comment="Checks that an Anti Virus Product is installed" test_ref="oval:org.mitre.oval:tst:7903"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5443" version="1" class="compliance">
      <metadata>
        <title>Verifies no USB Drives are installed</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2 This is intended to prevent
          data being transfered off secured machines via USB (thumb) drives.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:49.571-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:11.577-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:14.685-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion negate="true" comment="Checks for USB Drives" test_ref="oval:org.mitre.oval:tst:7953"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5442" version="1" class="compliance">
      <metadata>
        <title>Verifies that Firewall is installed</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This checks if a firewall
          is installed. NON-WMI Complaint products needs to be manually added as ORs</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:52.835-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:11.399-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:14.114-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion comment="Checks that an Firewall is installed" test_ref="oval:org.mitre.oval:tst:7943"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5275" version="1" class="compliance">
      <metadata>
        <title>Verifies there are no accounts that do not have expiring passwords or no passwords</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This is intended to insure
          that passwords are required and changed regularly.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:52.055-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:09.969-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:12.393-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion negate="true" comment="Checks for accounts without password or non-expiring passwords" test_ref="oval:org.mitre.oval:tst:8072"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5187" version="1" class="compliance">
      <metadata>
        <title>Verifies that Web Client Service is disabled</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This is intended to insure
          that Web Client Service is disabled on appropriate machines, for example secured database
          servers.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:52.443-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:09.756-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:10.993-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion comment="Checks that Web Client Network is not Running" test_ref="oval:org.mitre.oval:tst:7160"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5182" version="1" class="compliance">
      <metadata>
        <title>Verifies no Infrared devices are installed</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This is intended to prevent
          data being transfered off secured machines via infrared connections.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:51.240-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:09.530-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:10.759-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion negate="true" comment="Checks for infrared devices" test_ref="oval:org.mitre.oval:tst:7662"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5118" version="1" class="compliance">
      <metadata>
        <title>Verifies no wireless adapters are installed</title>
        <affected family="windows">
          <platform>Microsoft Windows Vista</platform>
          <platform>Microsoft Windows XP</platform>
        </affected>
        <description>Works on any Windows platform after Windows XP SP2. This is intended to prevent
          data being transfered off secured machines via wireless connections.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-15T23:53:40">
              <contributor organization="Lumension Security, Inc.">Ken Lassesen</contributor>
            </submitted>
            <status_change date="2008-05-23T10:54:51.485-04:00">DRAFT</status_change>
            <status_change date="2008-06-09T04:00:09.307-04:00">INTERIM</status_change>
            <status_change date="2008-06-30T04:00:10.510-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion negate="true" comment="Checks for wireless adapters" test_ref="oval:org.mitre.oval:tst:7971"/>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <wmi_test id="oval:org.mitre.oval:tst:8022" version="1" comment="Checks for security certificate on Sql Server" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5512"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7622" version="1" comment="Checks for floppy drives" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5753"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7908" version="1" comment="Checks for sharing" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5422"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7903" version="1" comment="Checks that an Anti Virus Product is installed" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5303"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7953" version="1" comment="Checks for USB Drives" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5624"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7943" version="1" comment="Checks that an Firewall is installed" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5693"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:8072" version="1" comment="Checks for accounts without password or non-expiring passwords" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5703"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7160" version="1" comment="Checks that Web Client Network is not Running" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5551"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7662" version="1" comment="Checks for infrared devices" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5600"/>
    </wmi_test>
    <wmi_test id="oval:org.mitre.oval:tst:7971" version="1" comment="Checks for wireless adapters" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <object object_ref="oval:org.mitre.oval:obj:5811"/>
    </wmi_test>
  </tests>
  <objects>
    <wmi_object id="oval:org.mitre.oval:obj:5512" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\Microsoft\SqlServer\ComputerManagement</namespace>
      <wql>Select FriendlyName FROM SecurityCertificate</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5753" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\cimv2</namespace>
      <wql>select Name from Win32_FloppyDrive</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5422" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\cimv2</namespace>
      <wql>Select Name from Win32_Share</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5303" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\SecurityCenter</namespace>
      <wql>SELECT instanceGuid FROM AntiVirusProduct</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5624" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\cimv2</namespace>
      <wql>select Name from Win32_DiskDrive where InterfaceType='USB'</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5693" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\SecurityCenter</namespace>
      <wql>SELECT instanceGuid FROM FirewallProduct</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5703" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\cimv2</namespace>
      <wql>Select Name from Win32_UserAccount Where PasswordRequired = False OR PasswordExpires =
        False</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5551" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\Microsoft\SqlServer\ComputerManagement</namespace>
      <wql>SELECT Name FROM Win32_NetworkClient Where Name='Web Client Network' and
      Status='OK'</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5600" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\cimv2</namespace>
      <wql>select Name from Win32_InfraredDevice</wql>
    </wmi_object>
    <wmi_object id="oval:org.mitre.oval:obj:5811" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#windows">
      <namespace>root\cimv2</namespace>
      <wql>Select Name from Win32_NetworkAdapter where Name LIKE '%Wireless%' or ProductName LIKE
        '%Wireless%'</wql>
    </wmi_object>
  </objects>
</oval_definitions>