3.4 Ensure 'Block third party cookies' is set to 'Enabled'

Information

Chrome allows cookies to be set by web page elements that are not from the domain in the user's address bar. Enabling this feature prevents third party cookies from being set.
NOTE: Third Party Cookies and Tracking Protection are required for many business critical websites, including SalesForce and Office365.
Rationale:
Blocking third party cookies can help protect a user's privacy by eliminating a number of website tracking cookies.

Solution

To establish the recommended configuration via Group Policy, set the following UI path to Enabled.
Computer Configuration\Administrative Templates\Google\Google Chrome\Block third party cookies
Impact:
Enabling this setting prevents cookies from being set by web page elements that are not from the domain that is in the browser's address bar.
Default Value:
Disabled. Third party cookies will be enabled but the user will be able to change that.

See Also

https://workbench.cisecurity.org/files/2385

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-10, CSCv6|13

Plugin: Windows

Control ID: e3239ba311f52bd3a7b8c0483452e5864e3b6317b0eb5812cc12d84766cf9821