Mozilla Firefox Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
SRG-APP-000278
Group -
Firefox must be configured to not automatically execute or download MIME types that are not authorized for auto-download.
Some files can be downloaded or execute without user interaction. This setting ensures these files are not downloaded and executed.Rule Medium Severity -
SRG-APP-000141
Group -
Firefox must be configured to disable form fill assistance.
To protect privacy and sensitive data, Firefox provides the ability to configure the program so that data entered into forms is not saved. This mitigates the risk of a website gleaning private info...Rule Medium Severity -
SRG-APP-000141
Group -
Firefox must be configured to not automatically check for updated versions of installed search plugins.
Updates must be controlled and installed from authorized and trusted servers. This setting overrides a number of other settings that may direct the application to access external URLs.Rule Medium Severity -
SRG-APP-000141
Group -
SRG-APP-000456
Group -
SRG-APP-000560
Group -
Firefox must be configured to allow only TLS 1.2 or above.
Use of versions prior to TLS 1.2 are not permitted. SSL 2.0 and SSL 3.0 contain a number of security flaws. These versions must be disabled in compliance with the Network Infrastructure and Secure ...Rule High Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules