6.4 Disable Form Fill Assistance

Information

Form Fill Assistance allows Firefox to save data that has been entered into forms by users so that future operations are performed faster.

Rationale:

This mitigates the risk of websites extracting information from prefilled text fields.

Impact:

Prefilled text fields will not be enabled.

Solution

To establish the recommended configuration, set browser.formfill.enable to false:

Type about:config in the address bar

Type browser.formfill.enable in the filter

Ensure the setting is set as prescribed.

OR

Open the mozilla.cfg file in the installation directory with a text editor

Add the following lines to mozilla.cfg:

lockPref('browser.formfill.enable', false);

Default Value:

True (Enabled).

See Also

https://workbench.cisecurity.org/files/4299

Item Details

Category: AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|AU-11, 800-53|SI-12

Plugin: Unix

Control ID: 8cc1f1fa099f416ab24804641f831428724ee9ca089dd4005a0604c11e6b9539