Skip to content

Guide to the Secure Configuration of Firefox

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Firefox must be configured to disable the installation of extensions.

    Addon installation may be disabled in an administrative policy by setting the <code>InstallAddonsPermission</code> key under <code>policies</code> ...
    Rule Medium Severity
  • Firefox autoplay must be disabled.

    Audio/Video autoplay may be disabled in an administrative policy by setting the <code>Default</code> key under <code>Permissions</code>, <code>Auto...
    Rule Medium Severity
  • Ensure the Content Blocker uBlock Origin is Installed

    The uBlock Origin will be installed automatically by configuring Firefox policy, and updates will be enabled. It can also be installed through the ...
    Rule Medium Severity
  • Enabled Firefox Cryptomining protection

    Cryptomining protection may be enabled by setting privacy.trackingprotection.cryptomining.enabled to true.
    Rule Medium Severity
  • Disable Firefox Development Tools

    Firefox provides development tools which identify detailed information about the browser and its configuration. These details are often also reco...
    Rule Low Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules