Skip to content

Microsoft Internet Explorer 11 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000089

    <GroupDescription></GroupDescription>
    Group
  • Deleting websites that the user has visited must be disallowed.

    &lt;VulnDiscussion&gt;This policy prevents users from deleting the history of websites the user has visited. If you enable this policy setting, web...
    Rule Medium Severity
  • SRG-APP-000080

    <GroupDescription></GroupDescription>
    Group
  • InPrivate Browsing must be disallowed.

    &lt;VulnDiscussion&gt;InPrivate Browsing lets the user control whether or not Internet Explorer saves the browsing history, cookies, and other data...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Scripting of Internet Explorer WebBrowser control property must be disallowed (Internet zone).

    &lt;VulnDiscussion&gt;This policy setting controls whether a page may control embedded WebBrowser control via script. Scripted code hosted on sites...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • When uploading files to a server, the local directory path must be excluded (Internet zone).

    &lt;VulnDiscussion&gt;This policy setting controls whether or not the local path information will be sent when uploading a file via a HTML form. If...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Internet Explorer Processes for Notification Bars must be enforced (Reserved).

    &lt;VulnDiscussion&gt;This policy setting allows you to manage whether the Notification Bar is displayed for Internet Explorer processes when file ...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules