DISA STIG IE 9 v1r5

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: DISA STIG IE 9 v1r5

Updated: 10/5/2021

Authority: DISA STIG

Plugin: Windows

Revision: 1.26

Estimated Item Count: 136

File Details

Filename: DISA_STIG_IE9_v1r5.audit

Size: 239 kB

MD5: 1038536242369ce6b9cee4dbcc16d867
SHA256: 2711a8131a56e01a0fe3a471c1140e37b22e1271b3aed6c7ea95dd720ba42958

Audit Items

DescriptionCategories
DISA_STIG_IE9_v1r5.audit
DTBI010 - Prevent performance of First Run Customize setting - 'DisableFirstRunCustomize = 1'.

CONFIGURATION MANAGEMENT

DTBI014 - IE SSL/TLS Settings - 'SecureProtocols = 160'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI015 - IE Warning of invalid certificates - 'WarnOnBadCertRecving=1'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI018 - Publishers Certificate Revocation -'State = 65536'.

IDENTIFICATION AND AUTHENTICATION

DTBI022 - Download signed ActiveX - Internet -'1001 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI023 - Download unsigned ActiveX - Internet - '1004 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI024 - Initialize and script ActiveX - Internet - '1201 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI030 - Font download control - Internet Zone - '1604 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI031 - Java Permission - Internet - '1C00 = 0'.

ACCESS CONTROL

DTBI032 - Data sources across domains - Internet - '1406 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI036 - Drag and drop or copy and paste-Internet - '1802 = 3'.

CONFIGURATION MANAGEMENT

DTBI038 - Programs and files in IFRAME - Internet - '1804 = 3'.

SYSTEM AND INFORMATION INTEGRITY

DTBI039 - Navigating across domains - Internet - '1607 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI042 - Userdata persistence - Internet Zone - '1606 = 3'.

ACCESS CONTROL

DTBI044 - Paste operations via script - Internet - '1407 = 3'.

CONFIGURATION MANAGEMENT

DTBI046 - User Authentication-Logon - Internet Zone -'1A00 = 65536'.

ACCESS CONTROL

DTBI061 - Java Permission - Intranet Zone - '1C00 = 65536'.

ACCESS CONTROL

DTBI091 - Java Permission - Trusted - '1C00 = 65536'.

ACCESS CONTROL

DTBI112 - Download signed ActiveX - Restricted Sites - '1001=3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI113 - Download unsigned ActiveX - Restricted - '1004 = 3.'

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI114 - Initialize and script ActiveX-Restricted - '1201 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI115 - ActiveX control and plugins - Restricted- '1200 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI116 - ActiveX control marked safe - Restricted - '1405 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI119 - File download control - Restricted Sites - '1803 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI120 - Font download control - Restricted Sites -'1604=3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI121 - Java Permission - Restricted - '1C00 = 0'.

ACCESS CONTROL

DTBI122 - Access data sources - Restricted Sites - '1406 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI123 - META REFRESH - Restricted Sites -'1608=3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI126 - Drag and drop or copy and paste-Restricted -'1802 = 3'.

CONFIGURATION MANAGEMENT

DTBI127 - Installation of desktop items - Restricted - '1800=3'.

CONFIGURATION MANAGEMENT

DTBI128 - Programs and files in IFRAME-Restricted -'1804 = 3'.

SYSTEM AND INFORMATION INTEGRITY

DTBI129 - Navigating across domains - Restricted - '1607 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI132 - Userdata persistence - Restricted Sites - '1606 = 3'.

ACCESS CONTROL

DTBI133 - Active scripting - Restricted Sites - '1400 = 3'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI134 - Paste operations via script - Restricted -'1407 = 3'.

CONFIGURATION MANAGEMENT

DTBI136 - User Authentication - Logon - Restricted -'1A00 = 196608'.

ACCESS CONTROL

DTBI300 - Configuring History lists - 'DaysToKeep = 40'.

CONFIGURATION MANAGEMENT

DTBI300 - Configuring History lists - 'History = 1'.

CONFIGURATION MANAGEMENT

DTBI305 - Automatic configuration is not disabled -'Autoconfig = 1'.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI315 - Customer Experience Improvement Program - 'DisableCustomerImprovementProgram = 0'.

CONFIGURATION MANAGEMENT

DTBI318 - Addition and deletion of sites - 'Security_zones_map_edit = 1'.

CONFIGURATION MANAGEMENT

DTBI319 - Changing of policies - 'Security_options_edit = 1'.

CONFIGURATION MANAGEMENT

DTBI320 - Security zone machine settings - 'Security_HKLM_only = 1'.

ACCESS CONTROL

DTBI325 - Security settings check feature -'DisableSecuritySettingsCheck = 0'.

CONFIGURATION MANAGEMENT

DTBI340 - Active content from CDs - 'LOCALMACHINE_CD_UNLOCK = 0'.

CONFIGURATION MANAGEMENT

DTBI350 - Software with invalid signatures - 'RunInvalidSignatures = 0'.

CONFIGURATION MANAGEMENT

DTBI355 - Third-party browser extensions - 'Enable Browser Extensions = no'.

CONFIGURATION MANAGEMENT

DTBI365 - Checking for server certificate revocation must be enforced -'CertificateRevocation = 1'.

IDENTIFICATION AND AUTHENTICATION

DTBI367 - Proxy settings - 'ProxySettingsPerUser = 1'.

ACCESS CONTROL