Microsoft Windows Out-of-Box Setup

The first time the device is booted, the Windows Out-of-Box Experience will launch in order to capture operating system configuration information including user accounts, computer name, and network connection settings.

General guidance for Microsoft Windows out-of-box setup:

  • Selecting a network connection. Only connect to secure wireless networks. Networks using older key exchange protocols, such as WEP, are not secure.

  • Choose to Customize Settings. The Windows Express installation settings are convenient but may enable unnecessary operating system features for the use case of the device. Features such as WifiSense or Location Services are examples of settings that are configurable using these setup screens.

  • Creating an account for the PC. The initial user created by Windows Setup will have administrative privileges in the system. Avoid choosing user names that leak information, such as the privilege level. Use complex passwords for all Administrative and Standard user accounts.

  • Computer Name. The default computer name supplied by Windows Setup is randomly generated. In some cases, this naming scheme will be undesirable. When changing the computer name of the device, avoid choosing a computer name that leaks information about device. For example, Windows10POSTerminal1 allows an attacker with network access to immediately determine the operating system version and the purpose of the device.