Skip to content

III - Administrative Classified

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000039

    Group
  • Firewall traversal from remote host must be disabled.

    Remote connections should never be allowed that bypass the firewall, as there is no way to verify if they can be trusted. Enables usage of STUN and relay servers when remote clients are trying to e...
    Rule Medium Severity
  • SRG-APP-000206

    Group
  • Site tracking users location must be disabled.

    Website tracking is the practice of gathering information as to which websites were accesses by a browser. The common method of doing this is to have a website create a tracking cookie on the brows...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • Sites ability to show pop-ups must be disabled.

    Chrome allows you to manage whether unwanted pop-up windows appear. Pop-up windows that are opened when the end user clicks a link are not blocked. If you enable this policy setting, most unwanted ...
    Rule Medium Severity
  • SRG-APP-000089

    Group
  • Extensions installation must be blocklisted by default.

    Extensions are developed by third party sources and are designed to extend Google Chrome's functionality. An extension can be made by anyone, to do and access almost anything on a system; this mean...
    Rule Medium Severity
  • SRG-APP-000210

    Group
  • Extensions that are approved for use must be allowlisted.

    The allowlist should only contain organizationally approved extensions. This is to prevent a user from accidently allowlisitng a malicious extension. This policy allows you to specify which extensi...
    Rule Low Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules