6.4 Disable Form Fill Assistance

Information

Form Fill Assistance allows Firefox to save data that has been entered into forms by users so that future operations are performed faster.

Rationale:

This mitigates the risk of websites extracting information from prefilled text fields.

Impact:

Prefilled text fields will not be enabled.

Solution

To establish the recommended configuration, set browser.formfill.enable to false:

Type about:config in the address bar

Type browser.formfill.enable in the filter

Ensure the setting is set as prescribed.

OR

Open the mozilla.cfg file in the installation directory with a text editor

Add the following lines to mozilla.cfg:

lockPref('browser.formfill.enable', false);

Default Value:

True (Enabled).

See Also

https://workbench.cisecurity.org/files/4299

Item Details

Category: AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|AU-11, 800-53|SI-12

Plugin: Unix

Control ID: e7285a9e771ae1fb5871e0e66d6f8a4445d9337ce4d1928eac1279d6a97e3984