Forum Discussion

JAMES LEINWEBER's avatar
JAMES LEINWEBER
Copper Contributor
Nov 30, 2017
Solved

PCI-DSS - can we make windows 10 only talk to WSUS or System Center?

I understand Microsoft's desire for consumer editions of windows 10 to send telemetry feedback home for QA purposes.  However, in regulated industries where PCI-DSS and HIPAA and the like apply, it's...
  • PieterWigleven's avatar
    Nov 30, 2017

    Hi James, 

     

    Thanks for your question. A few comments that might help:

    - HIPPA is currently working on an updated version of their "HIPAA Compliance with Microsoft Windows 10 Enterprise" which explains which features to enable/disable to improve compliancy. The version from February 2017 can be find here

    - With Windows 10 Enterprise, you can switch the diagnostic to Security level. If you want to eliminate network traffic any further, keep in mind that security of the OS can be impacted. There are certain security features that won't work, e.g. SmartScreen or Certificate Revocation List checks. It's possible to reduce the traffic beyond the Security level. Microsoft has documented how to disable every component in the OS that requires some sort of network/internet connectivity. Details on how to do that can be found here. Keep in mind that disabling the security related components of the operating system means your organization takes that responsibility. Good luck!

     

    Kind regards,

    Pieter 

Resources