6.13 Disabled Delete Data Upon Shutdown

Information

This setting allows for the deletion of user data upon closing the browser.

Rationale:

Deleting browser data will delete information that may be important for a computer investigation and investigators such as Computer Forensics Analysts may not be able to retrieve pertinent information to the investigation.

Impact:

None - This is the default behavior.

Note: This setting will preserve browsing history that could contain a user's personal browsing history. Please make sure that this setting is in compliance with organizational policies.

Solution

To establish the recommended configuration, set Privacy.sanitize.SanitizeOnShutdown to false:

Type about:config in the address bar

Type Privacy.sanitize.SanitizeOnShutdown in the filter

Ensure the setting is set as prescribed.

OR

Open the mozilla.cfg file in the installation directory with a text editor

Add the following lines to mozilla.cfg:

lockPref('Privacy.sanitize.SanitizeOnShutdown', false);

Default Value:

False (Disabled).

See Also

https://workbench.cisecurity.org/files/4299

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a.

Plugin: Windows

Control ID: 9b65b672ac9d5c6360dc518c0ec165d0536feb70a9dd7e839bbd6825ca528f0b