Skip to content

No profile (default benchmark)

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000039

    <GroupDescription></GroupDescription>
    Group
  • Dragging of content from different domains within a window must be disallowed (Restricted Sites zone).

    &lt;VulnDiscussion&gt;This policy setting allows you to set options for dragging content from one domain to a different domain when the source and ...
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • Anti-Malware programs against ActiveX controls must be run for the Internet zone.

    &lt;VulnDiscussion&gt;This policy setting determines whether Internet Explorer runs Anti-Malware programs against ActiveX controls, to check if the...
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • Anti-Malware programs against ActiveX controls must be run for the Restricted Sites zone.

    &lt;VulnDiscussion&gt;This policy setting determines whether Internet Explorer runs Anti-Malware programs against ActiveX controls, to check if the...
    Rule Medium Severity
  • SRG-APP-000278

    <GroupDescription></GroupDescription>
    Group
  • Prevent bypassing SmartScreen Filter warnings must be enabled.

    &lt;VulnDiscussion&gt;This policy setting determines whether the user can bypass warnings from SmartScreen Filter. SmartScreen Filter prevents the ...
    Rule Medium Severity
  • SRG-APP-000209

    <GroupDescription></GroupDescription>
    Group
  • Prevent bypassing SmartScreen Filter warnings about files that are not commonly downloaded from the internet must be enabled.

    &lt;VulnDiscussion&gt;This policy setting determines whether the user can bypass warnings from SmartScreen Filter. SmartScreen Filter warns the use...
    Rule Medium Severity
  • SRG-APP-000210

    <GroupDescription></GroupDescription>
    Group
  • Prevent per-user installation of ActiveX controls must be enabled.

    &lt;VulnDiscussion&gt;This policy setting allows you to prevent the installation of ActiveX controls on a per-user basis. If you enable this policy...
    Rule Medium Severity
  • SRG-APP-000427

    <GroupDescription></GroupDescription>
    Group
  • Prevent ignoring certificate errors option must be enabled.

    &lt;VulnDiscussion&gt;This policy setting prevents the user from ignoring Secure Sockets Layer/Transport Layer Security (SSL/TLS) certificate error...
    Rule Medium Severity
  • SRG-APP-000278

    <GroupDescription></GroupDescription>
    Group
  • Turn on SmartScreen Filter scan option for the Internet Zone must be enabled.

    &lt;VulnDiscussion&gt;This policy setting controls whether SmartScreen Filter scans pages in this zone for malicious content. If you enable this po...
    Rule Medium Severity
  • SRG-APP-000278

    <GroupDescription></GroupDescription>
    Group
  • Turn on SmartScreen Filter scan option for the Restricted Sites Zone must be enabled.

    &lt;VulnDiscussion&gt;This policy setting controls whether SmartScreen Filter scans pages in this zone for malicious content. If you enable this po...
    Rule Medium Severity
  • SRG-APP-000210

    <GroupDescription></GroupDescription>
    Group
  • The Initialize and script ActiveX controls not marked as safe must be disallowed (Intranet Zone).

    &lt;VulnDiscussion&gt;ActiveX controls that are not marked safe for scripting should not be executed. Although this is not a complete security meas...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules