Original and Revised Versions

This is the original version of the document. It will be followed by the version I revised for a smooth end-user experience.

David Ben Horin

David Ben Horin

Technical Writing • 4 min read

SYNAPSEOS SYSTEM OS HARDENING

The Operating System of SynapseOS System has been hardened based on NIST recommendations, as described in the USGCB for the specific Windows 7-based systems, and according to their relevance for the specific needs of SynapseOS System.

During the preparation of the SynapseOS System PC® image, the OS hardening is installed by execution of dedicated scripts that:

  • Disable windows service: SSDP Discovery Service (SSDPSRV)
  • Define Windows Log Size (to 20,480 KB) and Windows log Retention policy (to “Overwrite when needed”) for all Windows logs: Application, Security and System
  • Restrict Windows Guest user access to Windows logs (Application, Security and System).
  • Define Windows Local Policies settings for:
    • Audit Policy
    • User Right Assignments
    • Security Options
  • Operate directly on Windows Registry keys by either:
    • Modifying their default values
    • Creating them with specific values
    • Deleting them

The OS hardening scripts are updated before each SynapseOS System new version release and before the Validation phase of the product in sufficient time to detect possible negative impacts on the function of the system.

PROPRIETARY SOFTWARE

SynapseOS System Workstation Software includes home designed, implemented and validated software, using standard tools and according to the NeuraX SOPs. The main programming languages are C++ and C#, and the development environment is part of the secured parent company network.
Software Development Tools and Methods are implemented according to the Quality requirements of NeuraX Software Development Procedures and Guidelines. (See Software Development Guidelines.)

Revised Version


SYNAPSEOS SYSTEM: OS HARDENING

The SynapseOS Operating System has been hardened based on the recommendations of the National Institute of Standards and Technology (NIST) as described in the United States Government Configuration Baseline (USGCB) for specific Windows 7-based systems and for the specific needs of the SynapseOS System.

During the preparation of the SynapseOS System PC image , the OS hardening is installed by execution of dedicated scripts that:

  • Disable Windows service: SSDP Discovery Service (SSDPSRV)
  • Define Windows Log Size (up to 20,480 KB) and Windows log Retention policy (to “Overwrite when needed”) for all Windows logs: Application, Security, and System
  • Restrict Windows Guest user access to Windows logs (Application, Security, and System )
  • Define Windows Local Policies settings for:
    • Audit Policy
    • User Right Assignments
    • Security Options
  • Operate directly on Windows Registry keys by either:
    • Modifying their default values
    • Creating them with specific values
    • Deleting them

The OS hardening scripts are updated before the validation phase of each SynapseOS System version release to detect possible negative impacts on the function of the system.

SYNAPSEOS SYSTEM: PROPRIETARY SOFTWARE

THE SynapseOS System Workstation Software features home-designed, implemented, and validated software, using standard tools according to the NeuraX SOPs.

The main programming languages are C++ and C#. The development environment is part of the secured parent company network.

Software Development tools and methods are implemented according to the quality requirements of the NeuraX Software Development's Procedures and Guidelines. (See Software Development Guidelines.)

+