8.3.28 Set 'Use Pop- up Blocker' to 'Enabled:Enable'

Information

*Description*

This policy setting allows you to manage whether unwanted pop-up windows appear. Pop-
up windows that are opened when the end user clicks a link are not blocked. The
recommended state for this setting is- Enabled-Enable.

*Rationale*

Pop-up windows have been used on web sites that host malicious content to trick users
into clicking on dangerous links or to confuse users by hiding elements of the browser
interface.

Solution

To implement the recommended configuration state, set the following Group Policy setting
to Enabled.

Computer Configuration\Administrative Templates\Windows Components\Internet
Explorer\Internet Control Panel\Security Page\Restricted Sites Zone\Use Pop-up
Blocker\Use Pop-up Blocker

Then set the Use Pop-up Blocker option to Enable.

Impact-If you enable this policy setting, many unwanted pop-up windows are prevented from
appearing. If you disable this policy setting, pop-up windows are not prevented from
appearing. If you do not configure this policy setting, many unwanted pop-up windows are
prevented from appearing.

See Also

https://workbench.cisecurity.org/files/1516

Item Details

Audit Name: CIS IE 9 v1.0.0

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CSCv6|3.1

Plugin: Windows

Control ID: cfcfb5e83e3dd4c7cb1cadb8d32420ca84488c232ce293af5a9b2cc8fd9a09fe