7.7 Enable Extension Block List

Information

This feature enables Mozilla Firefox to retrieve a list of blocked applications from the server.

Rationale:

Enabling Mozilla to access the list of blocked applications mitigates the risk of installing a known malicious application.

Impact:

None - This is the default behavior.

Solution

To establish the recommended configuration, set extensions.blocklist.enabled to true:

Type about:config in the address bar

Type extensions.blocklist.enabled in the filter

Ensure the setting is set as prescribed.

OR

Open the mozilla.cfg file in the installation directory with a text editor

Add the following lines to mozilla.cfg:

lockPref('extensions.blocklist.enabled', true);

Default Value:

True

See Also

https://workbench.cisecurity.org/files/4299

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CM-10, 800-53|CM-11, 800-53|SC-18, CSCv7|7.2

Plugin: Unix

Control ID: 6e392bb797cbfaf198af1bcbf258399a1b46cbfe91fde6a6a4637872f3ac9348