6.2 Disabled Browser Sign-ins

Information

This policy setting controls whether a user can sign into Firefox with an account to use services.

Rationale:

Syncing user data especially from a personal account can contain data that is not appropriate for an enterprise environment.

Impact:

Users will not be able to sign into the Firefox browser.

Solution

To establish the recommended configuration, set identity.fxaccounts.enabled to false:

Type about:config in the address bar

Type identity.fxaccounts.enabled in the filter

Ensure the setting is set as prescribed.

OR

Open the mozilla.cfg file in the installation directory with a text editor

Add the following lines to mozilla.cfg:

lockPref('identity.fxaccounts.enabled', false);

Default Value:

True (Enabled).

See Also

https://workbench.cisecurity.org/files/4299

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a.

Plugin: Unix

Control ID: 9b96b73c8dab522543fb9ec5a4bfccc5e447a63c5905d1847a59a30f9d545da5