ÿþ; ; Security Configuration INF File for DMZ Hosts running Windows 2003/2008 ; [Unicode] Unicode=yes [Profile Description] Description=DMZ Windows 2003/2008 basic security configuration [System Access] ; CHANGE! ;NewAdministratorName = "Administrator" ; CHANGE! ;NewGuestName = "Guest" MinimumPasswordAge = 1 MaximumPasswordAge = 60 MinimumPasswordLength = 8 PasswordComplexity = 1 PasswordHistorySize = 6 LockoutBadCount = 4 ResetLockoutCount = 600 LockoutDuration = -1 RequireLogonToChangePassword = 0 ForceLogoffWhenHourExpire = 0 ClearTextPassword = 0 LSAAnonymousNameLookup = 0 EnableAdminAccount = 1 EnableGuestAccount = 0 [Event Audit] AuditSystemEvents = 3 AuditLogonEvents = 3 AuditObjectAccess = 2 AuditPrivilegeUse = 3 AuditPolicyChange = 3 AuditAccountManage = 3 AuditProcessTracking = 0 AuditDSAccess = 2 AuditAccountLogon = 3 [Registry Values] MACHINE\Software\Microsoft\Driver Signing\Policy=3,1 MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SecurityLevel=4,0 MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SetCommand=4,0 MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateCDRoms=1,"1" MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateDASD=1,"1" MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateFloppies=1,"1" MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\CachedLogonsCount=1,"10" MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ForceUnlockLogon=4,0 MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\PasswordExpiryWarning=4,15 MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ScRemoveOption=1,"0" MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableCAD=4,0 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayLastUserName=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayLockedUserId=4,2 ;MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeCaption=1,"Security Notice" ;MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeText=7,This is a protected information system. Access or use"," or attempts of the same"," by non-authorised users is forbidden. Violators will be made subject to criminal"," civil"," disciplinary and / or administrative measures. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ScForceOption=4,0 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ShutdownWithoutLogon=4,0 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\UndockWithoutLogon=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\FilterAdministratorToken=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorUser=4,0 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableInstallerDetection=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ValidateAdminCodeSignatures=4,0 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableSecureUIAPaths=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\PromptOnSecureDesktop=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableVirtualization=4,1 MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableUIADesktopToggle=4,0 MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\AuthenticodeEnabled=4,0 MACHINE\System\CurrentControlSet\Control\Lsa\SCENoApplyLegacyAuditPolicy=4,1 MACHINE\System\CurrentControlSet\Control\Lsa\AuditBaseObjects=4,0 MACHINE\System\CurrentControlSet\Control\Lsa\CrashOnAuditFail=4,0 MACHINE\System\CurrentControlSet\Control\Lsa\DisableDomainCreds=4,1 MACHINE\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous=4,0 MACHINE\System\CurrentControlSet\Control\Lsa\FIPSAlgorithmPolicy=4,0 MACHINE\System\CurrentControlSet\Control\Lsa\ForceGuest=4,0 MACHINE\System\CurrentControlSet\Control\Lsa\FullPrivilegeAuditing=3,1 MACHINE\System\CurrentControlSet\Control\Lsa\LimitBlankPasswordUse=4,1 MACHINE\System\CurrentControlSet\Control\Lsa\LmCompatibilityLevel=4,4 MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\NTLMMinClientSec=4,537395200 MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\NTLMMinServerSec=4,537395200 MACHINE\System\CurrentControlSet\Control\Lsa\NoDefaultAdminOwner=4,0 MACHINE\System\CurrentControlSet\Control\Lsa\NoLMHash=4,1 MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymous=4,1 MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymousSAM=4,1 MACHINE\System\CurrentControlSet\Control\Lsa\FIPSAlgorithmPolicy\Enabled=4,0 MACHINE\System\CurrentControlSet\Control\Print\Providers\LanMan Print Services\Servers\AddPrinterDrivers=4,1 MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedExactPaths\Machine=7,System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedPaths\Machine=7,System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog MACHINE\System\CurrentControlSet\Control\Session Manager\Kernel\ObCaseInsensitive=4,1 MACHINE\System\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown=4,0 MACHINE\System\CurrentControlSet\Control\Session Manager\ProtectionMode=4,1 MACHINE\System\CurrentControlSet\Control\Session Manager\SubSystems\optional=7,Posix MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\AutoDisconnect=4,15 MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableForcedLogOff=4,1 MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableSecuritySignature=4,1 MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\NullSessionPipes=7,browser MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\NullSessionShares=7,COMCFG,DFS$ MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RequireSecuritySignature=4,0 MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RestrictNullSessAccess=4,1 MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\enableforcedlogoff=4,1 MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnablePlainTextPassword=4,0 MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnableSecuritySignature=4,1 MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\RequireSecuritySignature=4,0 MACHINE\System\CurrentControlSet\Services\LDAP\LDAPClientIntegrity=4,1 MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\DisablePasswordChange=4,0 MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\MaximumPasswordAge=4,30 MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireSignOrSeal=4,1 MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireStrongKey=4,1 MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SealSecureChannel=4,1 MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SignSecureChannel=4,1 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DisableIPSourceRouting=4,2 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableDeadGWDetect=4,0 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableICMPRedirect=4,0 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnablePMTUDiscovery=4,0 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableSecurityFilters=4,1 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\KeepAliveTime=4,300000 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\PerformRouterDiscovery=4,0 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\SynAttackProtect=4,1 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxConnectResponseRetransmissions=4,2 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxDataRetransmissions=4,3 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxPortsExhausted=4,5 MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\DisableIPSourceRouting=4,2 MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\EnableICMPRedirect=4,0 MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\TcpMaxDataRetransmissions=4,3 MACHINE\System\CurrentControlSet\Services\AFD\Parameters\DynamicBacklogGrowthDelta=4,10 MACHINE\System\CurrentControlSet\Services\AFD\Parameters\EnableDynamicBacklog=4,1 MACHINE\System\CurrentControlSet\Services\AFD\Parameters\MaximumDynamicBacklog=4,20000 MACHINE\System\CurrentControlSet\Services\AFD\Parameters\MinimumDynamicBacklog=4,20 MACHINE\System\CurrentControlSet\Services\Netbt\Parameters\NoNameReleaseOnDemand=4,1 MACHINE\System\CurrentControlSet\Services\IPSEC\NoDefaultExempt=4,3 MACHINE\SYSTEM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ScreenSaverGracePeriod=4,0 HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\NoDriveTypeAutorun=4,255 MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SafeDllSearchMode=4,1 MACHINE\System\CurrentControlSet\Services\LanmanServer\Parameters\AutoShareWks=4,1 [Privilege Rights] SeNetworkLogonRight = *S-1-5-32-545,*S-1-5-32-547,*S-1-5-9,*S-1-5-32-551,*S-1-5-11,*S-1-5-32-544 SeBackupPrivilege = *S-1-5-32-544 SeChangeNotifyPrivilege = *S-1-5-32-544,*S-1-5-11,*S-1-5-19,*S-1-5-20 SeSystemtimePrivilege = *S-1-5-19,*S-1-5-32-544 SeTimeZonePrivilege=*S-1-5-19,*S-1-5-32-544 SeCreatePagefilePrivilege = *S-1-5-32-544 SeRemoteShutdownPrivilege = *S-1-5-32-544 SeAuditPrivilege = *S-1-5-19,*S-1-5-20 SeIncreaseQuotaPrivilege = *S-1-5-19,*S-1-5-20,*S-1-5-32-544 SeIncreaseBasePriorityPrivilege = *S-1-5-32-544 SeLoadDriverPrivilege = *S-1-5-32-544 SeBatchLogonRight = *S-1-5-19,SUPPORT_388945a0,IUSR_TEST-WY30HJ0VAL,IWAM_TEST-WY30HJ0VAL,IIS_WPG,ASPNET SeServiceLogonRight = *S-1-5-20 SeInteractiveLogonRight = *S-1-5-32-545,*S-1-5-32-547,*S-1-5-32-544 SeSecurityPrivilege = *S-1-5-32-544 SeSystemEnvironmentPrivilege = *S-1-5-32-544 SeProfileSingleProcessPrivilege = *S-1-5-32-544 SeSystemProfilePrivilege = *S-1-5-32-544 SeAssignPrimaryTokenPrivilege = *S-1-5-19,*S-1-5-20 SeRestorePrivilege = *S-1-5-32-551,*S-1-5-32-544 SeShutdownPrivilege = *S-1-5-32-544 SeTakeOwnershipPrivilege = *S-1-5-32-544 SeDenyNetworkLogonRight = SUPPORT_388945a0,*S-1-5-32-546,*S-1-5-7 SeDenyBatchLogonRight = SUPPORT_388945a0,*S-1-5-32-546 SeDenyInteractiveLogonRight = SUPPORT_388945a0,*S-1-5-32-546 SeUndockPrivilege = *S-1-5-32-544 SeEnableDelegationPrivilege = *S-1-5-32-544 SeManageVolumePrivilege = *S-1-5-32-544 SeRemoteInteractiveLogonRight = *S-1-5-32-544 SeDenyRemoteInteractiveLogonRight = *S-1-5-32-546 SeImpersonatePrivilege = *S-1-5-32-544,*S-1-5-6,*S-1-5-19,*S-1-5-20 SeIncreaseWorkingSetPrivilege=*S-1-5-32-544,*S-1-5-19 SeBatchLogonRight=*S-1-5-32-544 SeCreateGlobalPrivilege = *S-1-5-32-544,*S-1-5-6,*S-1-5-19,*S-1-5-20 SeCreateSymbolicLinkPrivilege=*S-1-5-32-544 SeTrustedCredManAccessPrivilege= [File Security] "%systemdrive%\",0,"S:AR(AU;OINPSAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\",0,"S:AR(AU;OICINPSAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\addins\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\application compatibility scripts\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\apppatch\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\cluster\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\connection wizard\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\downloaded program files\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\driver cache\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\help\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\ime\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\ime (x86)\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\inf\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\java\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\microsoft.net\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\msagent\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\msapps\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\pchealth\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\pchealth\helpctr",0,"S:PAR" "%systemroot%\repair\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\resources\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\security\",0,"S:PAR" "%systemroot%\security\templates\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\security\templates\policies",0,"S:PAR" "%systemroot%\setupupd\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\shellnew\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\srchasst\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system\",0,"S:AR(AU;OICINPSAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\",0,"S:AR(AU;OICINPSAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\tapi\",0,"S:AR(AU;OICINPSAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\tasks\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\twain_32\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\web\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\winsxs\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\administration\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\appmgmt\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\certlog\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\certsrv\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\clients\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\com\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\config\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%SystemRoot%\system32\config\netlogon.ftl",1,"S:PAR" "%systemroot%\system32\dhcp\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\dllcache\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\dns\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\drivers\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\export\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\grouppolicy\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\ias\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\inetsrv\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\lls\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\logfiles\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\macromed\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\microsoft\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\msdtc\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\mui\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\netmon\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\npp\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\oobe\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\pop3server\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\ras\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\reinstallbackups\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\reminst\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\restore\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\setup\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\spool\drivers\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\spool\prtprocs\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\usmt\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\wbem\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\wbem\logs\",0,"S:PAR" "%systemroot%\system32\windows media\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" "%systemroot%\system32\wins\",0,"S:AR(AU;OICISAFA;DCLCDTSDWDWO;;;WD)" [Version] signature="$CHICAGO$" Revision=1