Skip to content

Microsoft Internet Explorer 11 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000039

    <GroupDescription></GroupDescription>
    Group
  • Websites in less privileged web content zones must be prevented from navigating into the Internet zone.

    &lt;VulnDiscussion&gt;This policy setting allows a user to manage whether websites from less privileged zones, such as Restricted Sites, can naviga...
    Rule Medium Severity
  • SRG-APP-000039

    <GroupDescription></GroupDescription>
    Group
  • Websites in less privileged web content zones must be prevented from navigating into the Restricted Sites zone.

    &lt;VulnDiscussion&gt;This policy setting allows you to manage whether websites from less privileged zones, such as Restricted Sites, can navigate ...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Allow binary and script behaviors must be disallowed (Restricted Sites zone).

    &lt;VulnDiscussion&gt;This policy setting allows you to manage dynamic binary and script behaviors of components that encapsulate specific function...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Automatic prompting for file downloads must be disallowed (Restricted Sites zone).

    &lt;VulnDiscussion&gt;This policy setting determines whether users will be prompted for non user-initiated file downloads. Regardless of this setti...
    Rule Medium Severity
  • SRG-APP-000206

    <GroupDescription></GroupDescription>
    Group
  • Internet Explorer Processes for MIME handling must be enforced. (Reserved)

    &lt;VulnDiscussion&gt;Internet Explorer uses Multipurpose Internet Mail Extensions (MIME) data to determine file handling procedures for files rece...
    Rule Medium Severity
  • SRG-APP-000206

    <GroupDescription></GroupDescription>
    Group
  • Internet Explorer Processes for MIME handling must be enforced (Explorer).

    &lt;VulnDiscussion&gt;Internet Explorer uses Multipurpose Internet Mail Extensions (MIME) data to determine file handling procedures for files rece...
    Rule Medium Severity
  • SRG-APP-000206

    <GroupDescription></GroupDescription>
    Group
  • Internet Explorer Processes for MIME handling must be enforced (iexplore).

    &lt;VulnDiscussion&gt;Internet Explorer uses Multipurpose Internet Mail Extensions (MIME) data to determine file handling procedures for files rece...
    Rule Medium Severity
  • SRG-APP-000206

    <GroupDescription></GroupDescription>
    Group
  • Internet Explorer Processes for MIME sniffing must be enforced (Reserved).

    &lt;VulnDiscussion&gt;MIME sniffing is the process of examining the content of a MIME file to determine its context - whether it is a data file, an...
    Rule Medium Severity
  • SRG-APP-000206

    <GroupDescription></GroupDescription>
    Group
  • Internet Explorer Processes for MIME sniffing must be enforced (Explorer).

    &lt;VulnDiscussion&gt;MIME sniffing is the process of examining the content of a MIME file to determine its context - whether it is a data file, an...
    Rule Medium Severity
  • SRG-APP-000206

    <GroupDescription></GroupDescription>
    Group
  • Internet Explorer Processes for MIME sniffing must be enforced (iexplore).

    &lt;VulnDiscussion&gt;MIME sniffing is the process of examining the content of a MIME file to determine its context - whether it is a data file, an...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules