FFOX-00-000018 - Firefox must prevent the user from quickly deleting data.

Information

There should not be an option for a user to 'forget' work they have done. This is required to meet non-repudiation controls.

Solution

Windows group policy:
1. Open the group policy editor tool with 'gpedit.msc'.
2. Navigate to Policy Path: Computer ConfigurationAdministrative TemplatesMozillaFirefox
Policy Name: Disable Forget Button
Policy State: Enabled

macOS 'plist' file:
Add the following:
<key>DisableForgetButton</key>
<true/>

Linux 'policies.json' file:
Add the following in the policies section:
'DisableForgetButton': true

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MOZ_Firefox_V6R5_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-24(2), CAT|II, CCI|CCI-002355, Rule-ID|SV-251562r879703_rule, STIG-ID|FFOX-00-000018, Vuln-ID|V-251562

Plugin: Unix

Control ID: cdab3467c7409f65425e3a2e8fd76a85c51bfc067eff8e5d6612a94ca739deca