Upstream STIG for Google Chromium
Rules and Groups employed by this XCCDF Profile
-
Disable Background Processing
Chromium can be set to run at all times and process in the background. This should be disabled by setting <code>BackgroundModeEnabled</code> to <co...Rule Unknown Severity -
Disable Use of Cleartext Passwords
Chromium allows users to import and store passwords in cleartext. This should be disabled by setting <code>PasswordManagerAllowShowPasswords</code...Rule Unknown Severity -
Disable Cloud Print Sharing
Chromium has cloud sharing capabilities including sharing printers connected to the system. This is done via a proxy. To disable printer sharing, s...Rule Unknown Severity -
Disable Chromium's Ability to Traverse Firewalls
Chromium has the ability to bypass and ignore the system firewall. This ability should be disabled. To disable this setting, set <code>RemoteAcces...Rule Unknown Severity -
Disable Data Synchronization to Google
SyncDisabled
totrue
in the Chromium policy file.Rule Unknown Severity -
Disable Incognito Mode
Incognito Mode allows users to browse in private which prevents monitoring and validating user browsing habits. This capability should be disabled ...Rule Unknown Severity -
Disable Metrics Reporting
Whenever Chromium crashes, it sends its usage and crash-related data to Google. This should be disabled by setting <code>MetricsReportingEnabled</c...Rule Unknown Severity -
Disable Network Prediction
To disable the network prediction feature, setDnsPrefetchingEnabled
tofalse
in the Chromium policy file.Rule Unknown Severity -
Disable Outdated Plugins
Outdated plugins should be disabled by settingAllowOutdatedPlugins
tofalse
in the Chromium policy file.Rule Unknown Severity -
Disable Chromium Password Manager
Chromium Password Manager allows the saving and using of passwords in Chromium. This should be disabled by setting <code>PasswordManagerEnabled</co...Rule Unknown Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules