1.1.5.2 (L1) Ensure 'Browsing History' is set to 'Disabled'

Information

This policy setting allows for the deletion of user data upon closing the browser.

The recommended state for this setting is: Disabled

Deleting browser data will delete information that may be important for a computer investigation and investigators such as Computer Forensics Analysts may not be able to retrieve pertinent information to the investigation.

Solution

To establish the recommended configuration via GP, set the following UI path to Disabled :

Computer Configuration\Policies\Administrative Templates\Mozilla\Firefox\Clear data when browser is closed\Browsing History

Note: This Group Policy path does not exist by default. An additional Group Policy template ( firefox.admx/adml ) is required - it is available to download at this

link

.

Impact:

None - this is the default behavior.

Note: This setting will preserve browsing history that could contain a user's personal browsing history. Please make sure that this setting is in compliance with organizational policies.

See Also

https://workbench.cisecurity.org/benchmarks/18454

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Windows

Control ID: 0009dcfa1f74315d995f2ac057007c0c96d28b8f94b46bf78d6814e031ae1dbc