STIGQter STIGQter: STIG Summary: Microsoft SQL Server 2022 Instance Security Technical Implementation Guide Version: 1 Release: 4 Benchmark Date: 01 Apr 2026:

Unused database components, DBMS software, and database objects must be removed.

DISA Rule

SV-271291r1108899_rule

Vulnerability Number

V-271291

Group Title

SRG-APP-000141-DB-000091

Rule Version

SQLI-22-007000

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Remove all features that are not required.

Check Contents

From the server documentation, obtain a listing of required components.

Generate a listing of components installed on the server.

1. Click "Start".
2. Type "SQL Server 2022 Installation Center".
3. Launch the program.
4. Click "Tools".
5. Click "Installed SQL Server features discovery report".
6. Compare the feature listing against the required components listing.

If any features are installed, but are not required, this is a finding.

Vulnerability Number

V-271291

Documentable

False

Rule Version

SQLI-22-007000

Severity Override Guidance

From the server documentation, obtain a listing of required components.

Generate a listing of components installed on the server.

1. Click "Start".
2. Type "SQL Server 2022 Installation Center".
3. Launch the program.
4. Click "Tools".
5. Click "Installed SQL Server features discovery report".
6. Compare the feature listing against the required components listing.

If any features are installed, but are not required, this is a finding.

Check Content Reference

M

Target Key

5677