3.10 Ensure 'Enable network prediction' is set to 'Enabled: Do not predict actions on any network connection'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Google Chrome comes with the network prediction feature which provides DNS prefetching, TCP and SSL preconnection, and prerendering of web pages.

Predict network actions on any network connection (0) or (1)

Do not predict network actions on any network connection (2)

The recommended state for this setting is: Enabled with a value of Do not predict network actions on any network connection (2)

Rationale:

Opening connections to resources that may not be used could allow un-needed connections increasing attack surface and in some cases could lead to opening connections to resources which the user did not intend to utilize.

Impact:

Users will not be presented with web page predictions.

Solution

To establish the recommended configuration via Group Policy, set the following UI path to Enabled: Do not predict actions on any network connection:

Computer Configuration\Administrative Templates\Google\Google Chrome\Enable network prediction

Default Value:

Unset (Same as Enabled with a value of Predict network actions on any network connection)

See Also

https://workbench.cisecurity.org/files/3653

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CSCv7|13

Plugin: Windows

Control ID: 4e943cabc785c1e832c8201f8b95adb70dad7a21d17a18331bee42567ebed1b2