Skip to content

Disable Firefox network prediction

An XCCDF Rule

Description

Firefox has a feature where it predicts and caches DNS requests. This can be disabled by setting NetworkPrediction to true in the policy file.

Rationale

With network prediction enabled, URL requests are made without user consent. Browsers should always make a direct DNS request with prefetching.

ID
xccdf_org.ssgproject.content_rule_firefox_policy-network_prediction
Severity
Medium
References
Updated



Remediation - Shell Script


firefox_cfg="policies.json"
# Default to /etc/firefox/policies to use for remediations.
firefox_dirs="/etc/firefox/policies"
permissions=644