Check: DTBI750
Microsoft Internet Explorer 10 STIG:
DTBI750
(in versions v1 r16 through v1 r14)
Title
Updates to website lists from Microsoft must be disallowed. (Cat III impact)
Discussion
This policy controls the website compatibility lists provided by Microsoft. If you enable this policy setting, the compatibility website lists provided by Microsoft will be used during browser navigation. If a user visits a site on the compatibility list provided by Microsoft, the page will automatically display in Compatibility view. If you disable this policy setting, the Microsoft website list will not be used. Additionally, users cannot enable the feature using the Compatibility View Settings dialog box. If you do not configure this setting, the Microsoft website list will not be active. The user can enable the functionality using the Compatibility View Settings dialog box.
Check Content
The policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Internet Explorer -> Compatibility View -> "Include updated Web site lists from Microsoft" must be "Disabled". Procedure: Use the Windows Registry Editor to navigate to the following key: HKLM\Software\Policies\Microsoft\Internet Explorer\BrowserEmulation Criteria: If the value MSCompatibilityMode is REG_DWORD = 0, this is not a finding.
Fix Text
Set the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Internet Explorer -> Compatibility View -> "Include updated Web site lists from Microsoft" to "Disabled".
Additional Identifiers
Rule ID: SV-45449r1_rule
Vulnerability ID: V-22147
Group Title: DTBI750 - Microsoft web site list updates
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |