STIGQter STIGQter: STIG Summary: Microsoft Windows Server 2025 Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Jul 2026:

Windows Server 2025 must have a host-based intrusion detection and prevention service (IDPS) installed.

DISA Rule

SV-277996r1182235_rule

Vulnerability Number

V-277996

Group Title

SRG-OS-000480-GPOS-00227

Rule Version

WN25-00-000120

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Install a host-based IDPS on each server.

Check Contents

Determine whether there is a host based intrusion detection and prevention service on each server.

This requirement is not applicable on a system that has the role as the IDPS. However, this exception must be documented with the information system security officer (ISSO).

If a host-based IDPS is not installed on the system, this is a finding.

Vulnerability Number

V-277996

Documentable

False

Rule Version

WN25-00-000120

Severity Override Guidance

Determine whether there is a host based intrusion detection and prevention service on each server.

This requirement is not applicable on a system that has the role as the IDPS. However, this exception must be documented with the information system security officer (ISSO).

If a host-based IDPS is not installed on the system, this is a finding.

Check Content Reference

M

Target Key

5719