{"repo":"ansible-lockdown/Windows-2022-STIG","free":true,"listed":false,"github":"https://github.com/ansible-lockdown/Windows-2022-STIG","clone":"git clone https://github.com/ansible-lockdown/Windows-2022-STIG.git","description":"Automated STIG Benchmark Compliance Remediation for Windows Server 2022 with Ansible","language":"YAML","stars":16,"topics":["ansible","windows-server-2022","ansible-playbook","ansible-role","automation","cybersecurity","enterprise-hardening","it-compliance","secure-baseline","secure-configuration"],"license":"MIT","category":"security-tools","readme_excerpt":"Windows 2022 DISA STIG Configure a Windows 2022 system to be DISA STIG compliant Based on Windows DISA STIG Version 2, Rel 3 released on January 30, 2025 --- --- Looking for support? Lockdown Enterprise Ansible support Community Join us on our Discord Server to ask questions, discuss features, or just chat with other Ansible-Lockdown users. --- Caution(s) This role will make changes to the system which may have unintended consequences. This is not an auditing tool but a remediation tool to be used after an audit. Check Mode is not supported! The role will complete in check mode without errors, but it is not supported and should be used with caution. This role was developed against a clean install of the Windows 2022 operating system. If you are implementing an existing system please review this role for any site-specific changes that are needed. To use the release version please point to the main branch and relevant release for the STIG benchmark you wish to work with. --- Matching a security Level for STIG It is possible to only run controls that are based on a particular security level for STIG. This is managed using tags: - CAT1 - CAT2 - CAT3 The control found in the defaults main also needs to reflect true so as this will allow the controls to run when the playbook is launched. Coming from a previous release STIG releases always contain changes, so it is highly recommended to review the new references and available variables. This has changed significantly since the initi","default_branch":null,"files":null,"tree":[],"storefront":"/r/ansible-lockdown","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/ansible-lockdown/Windows-2022-STIG/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}