DTBI340 - Active content from CDs must be disallowed to run on user machines.

Information

This policy setting allows you to manage whether users receive a dialog requesting permission for active content on a CD to run. If you enable this policy setting, active content on a CD will run without a prompt. If you disable this policy setting, active content on a CD will always prompt before running. If you do not configure this policy, users can choose whether to be prompted before running active content on a CD.

Solution

Set the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Internet Explorer -> Internet Control Panel -> Advanced Page -> 'Allow active content from CDs to run on user machines' to 'Disabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Microsoft_IE9_V1R15_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(4), CAT|II, CCE|CCE-964, Rule-ID|SV-40626r1_rule, STIG-ID|DTBI340, Vuln-ID|V-15497

Plugin: Windows

Control ID: d6c5f9e452507ced5562cc5108c277a3f1e84a0197338235d46811ff50abfef7