7.5 Enable Warning for External Protocol Handler

Information

This feature indicates whether the user is warned before opening an external application for pre-configured protocols were its behavior is undefined.
Enabling a warning to appear before passing data to an external application mitigates the risk that sensitive information will be made vulnerable to outside threats.

Solution

Perform the following procedure:

* Open the mozilla.cfg file in the installation directory with a text editor

* Add the following lines to mozilla.cfg:

lockPref("network.protocol-handler.warn-external-default", true);

See Also

https://workbench.cisecurity.org/files/1158

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Unix

Control ID: 2c303c372f1279e0c4c6783b4375a677b19781d27dd179ac7fa113516b6ebc86