Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-72761 | DTBI1115-IE11 | SV-87399r1_rule | Medium |
Description |
---|
This policy setting determines whether users can run the Tabular Data Control (TDC) ActiveX control, based on security zone. By default, the TDC ActiveX Control is disabled in the Internet and Restricted Sites security zones. If you enable this policy setting, users will not be able to run the TDC ActiveX control from all sites in the specified zone. |
STIG | Date |
---|---|
Microsoft Internet Explorer 11 Security Technical Implementation Guide | 2017-01-04 |
Check Text ( C-72909r3_chk ) |
---|
In the policy value for Administrative Templates >> Windows Components >> Internet Explorer >> Internet Control Panel >> Security Page >> Intranet Zone, verify "Allow only approved domains to use the TDC ActiveX control" is enabled. Procedure: Use the Windows Registry Editor to navigate to the following key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3 Criteria If the value "TDC" is REG_DWORD = 1, this is not a finding. |
Fix Text (F-79171r2_fix) |
---|
In the policy value for Administrative Templates >> Windows Components >> Internet Explorer >> Internet Control Panel >> Security Page >> Intranet Zone, set "Allow only approved domains to use the TDC ActiveX control" to "Enabled". |