Skip to content

Add Cyber Essentials 3.3 hardening policies, migrate firewall to Settings Catalog - #15

Open
asalazar712 wants to merge 4 commits into
mainfrom
Hugos_Branch
Open

asalazar712 wants to merge 4 commits into
mainfrom
Hugos_Branch

Conversation

@asalazar712

Copy link
Copy Markdown
Contributor

Summary

  • Add Settings Catalog profile to disable AutoPlay/AutoRun (Cyber Essentials 3.3)
  • Add Settings Catalog profile for local account hardening (Cyber Essentials 3.3)
  • Migrate Windows Firewall policy from Device Configuration to Settings Catalog, adding a new baseline profile and a rule exemptions profile

Notes

  • The previous Device Configuration firewall profile (windows/windows-firewall/DeviceConfiguration/Windows Windows Firewall Rules harden Device.json) has been left in place and not removed as part of this migration.

asalazar712 and others added 4 commits September 29, 2026 21:45
…sentials 3.3, migrate firewall policy to Settings Catalog

Add Settings Catalog profiles for disabling AutoPlay/AutoRun and local account hardening to align with Cyber Essentials 3.3. Firewall rules are now delivered via Settings Catalog format, replacing the previous Device Configuration profile, and include a new baseline plus rule exemptions.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
Files did not show so I Uupdated file format to UTF-8 with Bom.
 Update the description field to use proper JSON escaping
 Update the description field to use proper JSON escaping or remove the line breaks. Replace the multi-line description with a single-line string using \n escape sequences if line breaks are needed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant