{"repo":"ansible-lockdown/Windows-10-STIG","free":true,"listed":false,"github":"https://github.com/ansible-lockdown/Windows-10-STIG","clone":"git clone https://github.com/ansible-lockdown/Windows-10-STIG.git","description":"Automated STIG Benchmark Compliance Remediation for Windows 10 Enterprise with Ansible","language":"YAML","stars":18,"topics":["ansible","ansible-role","ansible-playbook","automation","cybersecurity","enterprise-hardening","it-compliance","secure-automation","secure-baseline","secure-configuration"],"license":"MIT","category":"security-tools","readme_excerpt":"Windows 10 DISA STIG Configure a Windows 10 Enterprise system to be DISA STIG compliant. Based on Windows DISA STIG Version 3, Rel 3 released on January 30th, 2025 --- --- Looking For Support? 🤝 Lockdown Enterprise Ansible Support Community 💬 Join us on our Discord Server to ask questions, discuss features, or just chat with other Ansible-Lockdown users. --- 🚨 Caution(s) 🚨 This role will make changes to the system which may have unintended consequences. This is not an auditing tool but rather a remediation tool to be used after an audit has been conducted. Check Mode is not supported! 🚫 The role will complete in check mode without errors, but it is not supported and should be used with caution. This role was developed against a clean install of the Windows 10. If you are implementing to an existing system please review this role for any site specific changes that are needed. To use release version please point to main branch and relevant release for the stig benchmark you wish to work with. --- Matching A Security Level For STIG 🔐 It is possible to to only run controls that are based on a particular for security level for STIG. This is managed using tags: - CAT1 - CAT2 - CAT3 The controls found in defaults/main also need to reflect those control numbers due to aligning every control to the audit component. Coming From A Previous Release ⏪ STIG releases always contain changes, it is highly recommended to review the new references and available variables. This has changed","default_branch":null,"files":null,"tree":[],"storefront":"/r/ansible-lockdown","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/ansible-lockdown/Windows-10-STIG/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}