DISA STIG Mozilla Firefox Windows v5r2

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: DISA STIG Mozilla Firefox Windows v5r2

Updated: 2/22/2022

Authority: DISA STIG

Plugin: Windows

Revision: 1.1

Estimated Item Count: 29

Audit Items

DescriptionCategories
DISA_STIG_Mozilla_Firefox_v5r2_Windows.audit from DISA Mozilla Firefox v5r2 STIG
DTBF003 - Installed version of Firefox unsupported.

SYSTEM AND SERVICES ACQUISITION

DTBF030 - Firefox must be configured to allow only TLS - security.tls.version.max

SYSTEM AND COMMUNICATIONS PROTECTION

DTBF030 - Firefox must be configured to allow only TLS - security.tls.version.min

SYSTEM AND COMMUNICATIONS PROTECTION

DTBF050 - FireFox is configured to ask which certificate to present to a web site when a certificate is required.

SYSTEM AND INFORMATION INTEGRITY

DTBF085 - Firefox automatically checks for updated version of installed Search plugins.

CONFIGURATION MANAGEMENT

DTBF090 - Firefox automatically updates installed add-ons and plugins.

CONFIGURATION MANAGEMENT

DTBF100 - Firefox automatically executes or downloads MIME types which are not authorized for auto-download.

SYSTEM AND INFORMATION INTEGRITY

DTBF105 - Network shell protocol is enabled in FireFox.

CONFIGURATION MANAGEMENT

DTBF110 - Firefox is not configured to prompt a user before downloading and opening required file types.

CONFIGURATION MANAGEMENT

DTBF120 - FireFox plug-in for ActiveX controls is installed.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBF140 - Firefox formfill assistance option is disabled.

CONFIGURATION MANAGEMENT

DTBF150 - Firefox is configured to autofill passwords.

CONFIGURATION MANAGEMENT

DTBF160 - FireFox is configured to use a password store with or without a master password.

CONFIGURATION MANAGEMENT

DTBF180 - FireFox is not configured to block pop-up windows.

CONFIGURATION MANAGEMENT

DTBF181 - FireFox is configured to allow JavaScript to move or resize windows.

CONFIGURATION MANAGEMENT

DTBF182 - Firefox is configured to allow JavaScript to raise or lower windows.

CONFIGURATION MANAGEMENT

DTBF183 - Firefox is configured to allow JavaScript to disable or replace context menus - dom.event.contextmenu.enabled

CONFIGURATION MANAGEMENT

DTBF186 - Extensions install must be disabled.

CONFIGURATION MANAGEMENT

DTBF190 - Background submission of information to Mozilla must be disabled.

CONFIGURATION MANAGEMENT

DTBF195 - Firefox Development Tools Must Be Disabled.

SYSTEM AND INFORMATION INTEGRITY

DTBF200 - Telemetry must be disabled.

CONFIGURATION MANAGEMENT

DTBF205 - Telemetry archive must be disabled.

CONFIGURATION MANAGEMENT

DTBF210 - Fingerprinting protection must be enabled.

CONFIGURATION MANAGEMENT

DTBF215 - Cryptomining protection must be enabled.

CONFIGURATION MANAGEMENT

DTBF220 - Enhanced Tracking Protection must be enabled.

CONFIGURATION MANAGEMENT

DTBF225 - Extension recommendations must be disabled.

CONFIGURATION MANAGEMENT

DTBF235 - Deprecated ciphers must be disabled.

SYSTEM AND COMMUNICATIONS PROTECTION

DTBG010 - The DOD Root Certificate is not installed.

IDENTIFICATION AND AUTHENTICATION