CIS Mozilla Firefox 38 ESR Linux L1 v1.0.0

Audit Details

Name: CIS Mozilla Firefox 38 ESR Linux L1 v1.0.0

Updated: 4/25/2022

Authority: CIS

Plugin: Unix

Revision: 1.10

Estimated Item Count: 54

File Details

Filename: CIS_Mozilla_Firefox_38_ESR_v1.0.0_Linux_Level1.audit

Size: 69.5 kB

MD5: a07636a04d0e2be14c2f0afbd11fe04f
SHA256: 06dd03d74502aabb88ac1714efe84f7d40db19f7a247eb530c4f34fa22fb3af2

Audit Changelog

 
Revision 1.10

Apr 25, 2022

Miscellaneous
  • Metadata updated.
Revision 1.9

Mar 29, 2022

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.8

Jun 17, 2021

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.7

Sep 29, 2020

Miscellaneous
  • References updated.
Revision 1.6

Jul 14, 2020

Miscellaneous
  • Metadata updated.
Revision 1.5

Apr 17, 2020

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.4

Feb 7, 2019

Miscellaneous
  • Metadata updated.
Revision 1.3

Dec 13, 2018

Miscellaneous
  • References updated.
Revision 1.2

Jul 24, 2018

Miscellaneous
  • Platform check updated.
Added
  • 1.1 Create local-settings.js file - general.config.filename
  • 1.1 Create local-settings.js file - general.config.obscure_value
  • 1.2 Set permissions on local-settings.js
  • 1.3 Create mozilla.cfg file.
  • 1.4 Set permissions on mozilla.cfg
  • 1.5 Protect Firefox Binaries
  • 2.1 Enable Automatic Updates - app.update.auto
  • 2.1 Enable Automatic Updates - app.update.enabled
  • 2.1 Enable Automatic Updates - app.update.staging.enabled
  • 2.2 Enable Auto-Notification of Outdated Plugins
  • 2.3 Enable Information Bar for Outdated Plugins
  • 2.4 Set Update Interval Time Checks
  • 2.5 Set Update Wait Time Prompt
  • 2.6 Ensure Update-related UI Components are Displayed
  • 2.7 Set Search Provider Update Behavior
  • 3.1 Validate Proxy Settings
  • 3.3 Disable NTLM v1
  • 3.4 Enable Warning For \"Phishy\" URLs
  • 3.6 Set File URI Origin Policy
  • 3.7 Disable Cloud Sync
  • 3.8 Disable WebRTC - media.peerconnection.enabled
  • 3.8 Disable WebRTC - media.peerconnection.use_document_iceservers
  • 4.2 Set Security TLS Version Maximum
  • 4.3 Set Security TLS Version Minimum
  • 4.5 Block Mixed Active Content
  • 5.1 Disallow JavaScript's Ability to Change the Status Bar Text
  • 5.2 Disable Scripting of Plugins by JavaScript
  • 5.3 Disallow JavaScript's Ability to Hide the Address Bar
  • 5.4 Disallow JavaScript's Ability to Hide the Status Bar
  • 5.5 Disable Closing of Windows via Scripts
  • 5.6 Block Pop-up Windows
  • 5.7 Disable Displaying JavaScript in History URLs
  • 6.1 Disallow Credential Storage
  • 6.2 Do Not Accept Third Party Cookies
  • 6.3 Tracking Protection - privacy.donottrackheader.enabled
  • 6.3 Tracking Protection - privacy.donottrackheader.value
  • 6.3 Tracking Protection - privacy.trackingprotection.enabled
  • 6.3 Tracking Protection - privacy.trackingprotection.pbmode
  • 6.4 Set Delay for Enabling Security Sensitive Dialog Boxes
  • 6.5 Disable Geolocation Serivces
  • 7.1 Secure Application Plug-ins
  • 7.2 Disabling Auto-Install of Add-ons
  • 7.3 Enable Extension Block List
  • 7.4 Set Extension Block List Interval
  • 7.5 Enable Warning for External Protocol Handler
  • 7.6 Disable Popups Initiated by Plugins
  • 7.7 Enable Extension Auto Update
  • 7.8 Enable Extension Update
  • 7.9 Set Extension Update Interval Time Checks
  • 8.1 Enable Virus Scanning for Downloads
  • 8.2 Disable JAR from Opening Unsafe File Types
  • 8.3 Block Reported Web Forgeries
  • 8.4 Block Reported Attack Sites
  • CIS_Mozilla_Firefox_38_ESR_v1.0.0_Linux_Level1.audit for CIS Mozilla Firefox 38 ESR v1.0.0
Removed
  • 1.1 Create local-settings.js file - general.config.filename
  • 1.1 Create local-settings.js file - general.config.obscure_value
  • 1.2 Set permissions on local-settings.js
  • 1.3 Create mozilla.cfg file.
  • 1.4 Set permissions on mozilla.cfg
  • 1.5 Protect Firefox Binaries
  • 2.1 Enable Automatic Updates - app.update.auto
  • 2.1 Enable Automatic Updates - app.update.enabled
  • 2.1 Enable Automatic Updates - app.update.staging.enabled
  • 2.2 Enable Auto-Notification of Outdated Plugins
  • 2.3 Enable Information Bar for Outdated Plugins
  • 2.4 Set Update Interval Time Checks
  • 2.5 Set Update Wait Time Prompt
  • 2.6 Ensure Update-related UI Components are Displayed
  • 2.7 Set Search Provider Update Behavior
  • 3.1 Validate Proxy Settings
  • 3.3 Disable NTLM v1
  • 3.4 Enable Warning For \"Phishy\" URLs
  • 3.6 Set File URI Origin Policy
  • 3.7 Disable Cloud Sync
  • 3.8 Disable WebRTC - media.peerconnection.enabled
  • 3.8 Disable WebRTC - media.peerconnection.use_document_iceservers
  • 4.2 Set Security TLS Version Maximum
  • 4.3 Set Security TLS Version Minimum
  • 4.5 Block Mixed Active Content
  • 5.1 Disallow JavaScript's Ability to Change the Status Bar Text
  • 5.2 Disable Scripting of Plugins by JavaScript
  • 5.3 Disallow JavaScript's Ability to Hide the Address Bar
  • 5.4 Disallow JavaScript's Ability to Hide the Status Bar
  • 5.5 Disable Closing of Windows via Scripts
  • 5.6 Block Pop-up Windows
  • 5.7 Disable Displaying JavaScript in History URLs
  • 6.1 Disallow Credential Storage
  • 6.2 Do Not Accept Third Party Cookies
  • 6.3 Tracking Protection - privacy.donottrackheader.enabled
  • 6.3 Tracking Protection - privacy.donottrackheader.value
  • 6.3 Tracking Protection - privacy.trackingprotection.enabled
  • 6.3 Tracking Protection - privacy.trackingprotection.pbmode
  • 6.4 Set Delay for Enabling Security Sensitive Dialog Boxes
  • 6.5 Disable Geolocation Serivces
  • 7.1 Secure Application Plug-ins
  • 7.2 Disabling Auto-Install of Add-ons
  • 7.3 Enable Extension Block List
  • 7.4 Set Extension Block List Interval
  • 7.5 Enable Warning for External Protocol Handler
  • 7.6 Disable Popups Initiated by Plugins
  • 7.7 Enable Extension Auto Update
  • 7.8 Enable Extension Update
  • 7.9 Set Extension Update Interval Time Checks
  • 8.1 Enable Virus Scanning for Downloads
  • 8.2 Disable JAR from Opening Unsafe File Types
  • 8.3 Block Reported Web Forgeries
  • 8.4 Block Reported Attack Sites
  • CIS_Mozilla_Firefox_38_ESR_v1.0.0_Linux_Level1.audit for CIS Mozilla Firefox 38 ESR v1.0.0
Revision 1.1

Jun 1, 2018

Informational Update
  • CIS_Mozilla_Firefox_38_ESR_v1.0.0_Linux_Level1.audit for CIS Mozilla Firefox 38 ESR v1.0.0
Miscellaneous
  • Metadata updated.
  • References updated.
Added
  • 1.3 Create mozilla.cfg file.
Removed
  • 1.3 Create mozilla.cfg file