DTBC-0020 - Google Data Synchronization must be disabled.

Information

Disables data synchronization in Google Chrome using Google-hosted synchronization services and prevents users from changing this setting. If you enable this setting, users cannot change or override this setting in Google Chrome. If this policy is left not set the user will be able to enable Google Sync. Google Sync is used to sync information between different user devices, this data is then stored on Google owned servers. The synced data may consist of information such as email, calendars, viewing history, etc. This feature must be disabled because the organization does not have control over the servers the data is stored on.

Solution

Windows group policy:
1. Open the group policy editor tool with gpedit.msc
2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Google\Google Chrome\
Policy Name: Disable synchronization of data with Google
Policy State: Enabled
Policy Value: N/A

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Google_Chrome_V2R9_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-4(15), CAT|II, CCI|CCI-001374, Rule-ID|SV-221571r879540_rule, STIG-ID|DTBC-0020, STIG-Legacy|SV-57593, STIG-Legacy|V-44759, Vuln-ID|V-221571

Plugin: Windows

Control ID: ad0141c912ebd0adc795565d47a5ead9964f6989be22e0ebc586df771ed15512