← Back to LiveConnect catalog
LiveConnect · Deployment & Baseline

BASTION

Security baseline enforcement.

Applies a standardized security baseline across ten categories — telemetry, screen lock, UAC, autorun, firewall, guest account, password and audit policy, RDP, and Windows Update behavior. All categories run by default; pass -Categories to target specific ones. RDP is disabled unless -EnableRDP is set. Every change is logged to CSV.

Quick Launch

Run BASTION

Paste into a Kaseya VSA LiveConnect PowerShell terminal. Downloads bastion.ps1 from CursedTechnocrat/TechnicianToolkit-LiveConnect and executes it with defaults. Append parameters after & $f — see the script header for available switches.

Set-ExecutionPolicy Bypass -Scope Process -Force; $f="$env:TEMP\bastion.ps1"; irm https://raw.githubusercontent.com/CursedTechnocrat/TechnicianToolkit-LiveConnect/main/bastion.ps1 -OutFile $f; & $f
Category
Deployment & Baseline
Script
bastion.ps1
Tags
baseline, policy, hardening