Skip to content

Guide to the Secure Configuration of Chromium

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Disable Outdated Plugins

    Outdated plugins should be disabled by setting AllowOutdatedPlugins to false in the Chromium policy file.
    Rule Unknown Severity
  • Disable Chromium Password Manager

    Chromium Password Manager allows the saving and using of passwords in Chromium. This should be disabled by setting <code>PasswordManagerEnabled</co...
    Rule Unknown Severity
  • Disable All Plugins by Default

    Plugins are developed internally or by third party sources and are designed to extend Google Chromium's functionality. All plugins should be blackl...
    Rule Unknown Severity
  • Disable Popups

    Chromium allows you to manage whether or not unwanted pop-up windows appear. To disable pop-ups, set <code>DefaultPopupsSetting</code> to <code>2</...
    Rule Unknown Severity
  • Disable Insecure And Obsolete Protocol Schemas

    Each access to a URL is handled by the browser according to the URL's "scheme". The "scheme" of a URL is the section before the ":". The term "prot...
    Rule Unknown Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules