U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.


Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Microsoft Windows Server 2019 Ver 2, Rel 9 Checklist Details (Checklist Revisions)

Checklist Highlights

Checklist Name:
Microsoft Windows Server 2019
Checklist ID:
Ver 2, Rel 9
Review Status:
Governmental Authority: Defense Information Systems Agency
Original Publication Date:

Checklist Summary:

The Windows Server 2019 Security Technical Implementation Guide (STIG) is published as a tool to improve the security of Department of Defense (DoD) information systems. The requirements were developed by DoD Consensus as well as Windows security guidance by Microsoft Corporation. This document is meant for use in conjunction with other applicable STIGs including such topics as Active Directory Domain, Active Directory Forest, and Domain Name Service (DNS). The Windows Server 2019 STIG includes requirements for both domain controllers and member servers/standalone systems. Requirements specific to domain controllers have “DC” as the second component of the STIG IDs. Requirements specific to member servers have “MS” as the second component of the STIG IDs. All other requirements apply to all systems.

Checklist Role:

  • Desktop and Server Operating System

Known Issues:

Not provided.

Target Audience:

This checklist is primarily for IT generalists, security specialists, network architects, and other IT professionals and consultants who plan application or infrastructure development and deployments of Windows 8 and BitLocker for both desktop and laptop client computers in an enterprise environment.

Target Operational Environment:

  • Managed
  • Specialized Security-Limited Functionality (SSLF)

Testing Information:

Not provided.

Regulatory Compliance:

DoD Instruction (DoDI) 8500.01


Not provided.


Not provided.

Product Support:


Point of Contact:



Not provided.


Not provided.

Change History:

Updated status to FINAL - 7/10/19
Updated URLs - 8/12/2019
added SCAP content - 9/12/19
updated GPO file - 10/31/19
updated URLs per DISA - 1/21/2020
Updated GPO file per DISA - 1/29/2020
Updated GPO file per DISA - 2/3/2020
updated GPO file - 3/6/2020
updated resource title per DISA - 3/12/2020
Updated URLs - 4/15/2020
updated GPO file - 4/27/2020
updated URLs - 6/8/2020
Updated URL per DISA - 6/23/2020
Fixed title of resource - 6/25/2020
Updated URLs per DISA - 7/7/2020
Updated GPO file per DISA - 8/5/2020
updated GPO file - 10/29/2020
updated URLs and GPO file - 12/3/2020
Updated GPO - 12/4/2020
Updated GPO per DISA - 1/28/21
Updated GPO per DISA - 3/1/21
added SCC links per DISA guidance - 4/20/21
Updated resource per DISA - 5/5/21
Updated resource per DISA - 5/12/21
Updated resources per DISA - 5/25/21
Update GPO file - 8/9/21
Updated GPO per DISA - 8/24/21
updated SCC tool per DISA - 9/16/2021
updated GPO files - 11/22/2021
Updated resource per DISA - 11/26/21
Updated GPO per DISA - 2/17/22
Updated GPO per DISA - 5/2/22
Updated resources per DISA - 5/29/22
Updated SCC per DISA - 6/14/22
Updated GPO per DISA - 8/1/22
SCC - 10/13/22
updated GPO file - 11/7/22
updated URLs - 11/15/2022
updated GPO file - 1/31/2023
updated SCC content - 2/3/2023
 updated SCC content - 3/9/2023
Updated GPO per DISA - 5/1/23
updated URLs - 5/10/23
updated URLs - 5/19/2023
updated SCC content - 6/22/23
updated SHA - 7/27/23
Updated GPO per DISA - 7/31/23
Updated GPO per DISA - 8/21/23
Updated SCC per DISA - 9/21/23
Updated GPO per DISA - 11/2/23
Corrected SHA discrepancy - 11/3/2023
updated GPO package - 1/31/24
SHA - 2/7/24
Updated SCC Resources - 4/19/24
Update Version and Resources - 06/10/2024


URL Description


Reference URL Description

NIST checklist record last modified on 06/10/2024