Skip to content

I - Mission Critical Public

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000141

    Group
  • Internet Explorer Processes for MK protocol must be enforced (Reserved).

    The MK Protocol Security Restriction policy setting reduces attack surface area by blocking the seldom used MK protocol. Some older web applications use the MK protocol to retrieve information from...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • Internet Explorer Processes for MK protocol must be enforced (Explorer).

    The MK Protocol Security Restriction policy setting reduces attack surface area by blocking the seldom used MK protocol. Some older web applications use the MK protocol to retrieve information from...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • Internet Explorer Processes for MK protocol must be enforced (iexplore).

    The MK Protocol Security Restriction policy setting reduces attack surface area by blocking the seldom used MK protocol. Some older web applications use the MK protocol to retrieve information from...
    Rule Medium Severity
  • SRG-APP-000233

    Group
  • Internet Explorer Processes for Zone Elevation must be enforced (Reserved).

    Internet Explorer places restrictions on each web page it opens that are dependent upon the location of the web page (such as Internet Zone, Intranet Zone, or Local Machine Zone). Web pages on a lo...
    Rule Medium Severity
  • SRG-APP-000233

    Group
  • Internet Explorer Processes for Zone Elevation must be enforced (Explorer).

    Internet Explorer places restrictions on each web page it opens that are dependent upon the location of the web page (such as Internet Zone, Intranet Zone, or Local Machine Zone). Web pages on a lo...
    Rule Medium Severity
  • SRG-APP-000233

    Group
  • Internet Explorer Processes for Zone Elevation must be enforced (iexplore).

    Internet Explorer places restrictions on each web page it opens that are dependent upon the location of the web page (such as Internet Zone, Intranet Zone, or Local Machine Zone). Web pages on a lo...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • Internet Explorer Processes for Restrict File Download must be enforced (Reserved).

    In certain circumstances, websites can initiate file download prompts without interaction from users. This technique can allow websites to put unauthorized files on users' hard drives if they click...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • Internet Explorer Processes for Restrict File Download must be enforced (Explorer).

    In certain circumstances, websites can initiate file download prompts without interaction from users. This technique can allow websites to put unauthorized files on users' hard drives if they click...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • Internet Explorer Processes for Restrict File Download must be enforced (iexplore).

    In certain circumstances, websites can initiate file download prompts without interaction from users. This technique can allow websites to put unauthorized files on users' hard drives if they click...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • Internet Explorer Processes for restricting pop-up windows must be enforced (Reserved).

    Internet Explorer allows scripts to programmatically open, resize, and reposition various types of windows. Often, disreputable websites will resize windows to either hide other windows or force th...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules