Allocate floppy

Risk Level: Low risk vulnerability  Low

Check or Attack Name: Allocate Floppy

Platforms: Windows NT
Description:

The floppy drive is available to all users. For best security practice, the floppy drive should only be available to the user who is logged on at the console.

Remedy:

Edit the registry so that the floppy drive is available only to the currently logged on user. To edit the registry, follow these steps:

  1. Open the Registry Editor. From the Windows NT Start menu, select Run, and type regedt32.
  2. Go to HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon.
  3. From the Edit menu, select Add Value to display the Add Value dialog box.
  4. Create a value named AllocateFloppies with type REG_SZ.
  5. Click OK to display the String Editor.
  6. In the String field, type a value of 1 and click OK.
  7. Reboot your computer for this setting to take effect.
References:

X-Force Logo
Know Your Risks