UCF STIG Viewer Logo

External branding feature of Internet Explorer must be disallowed .


Overview

Finding ID Version Rule ID IA Controls Severity
V-15575 DTBI695 SV-40692r1_rule ECSC-1 Medium
Description
Prevents branding of Internet programs, such as customization of Internet Explorer and Outlook Express logos and title bars, by another party. If you enable this policy, it prevents customization of the browser by another party, such as an Internet service provider or Internet content provider. If you disable this policy or do not configure it, users could install customizations from another party-for example, when signing up for Internet services. This policy is intended for administrators who want to maintain a consistent browser across an organization.
STIG Date
Microsoft Internet Explorer 9 Security Technical Implementation Guide 2015-12-17

Details

Check Text ( C-39422r2_chk )
The policy value for User Configuration -> Administrative Templates -> Windows Components -> Internet Explorer -> "Disable external branding of Internet Explorer" must be “Enabled”.

Procedure: Use the Windows Registry Editor to navigate to the following key:
HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions

Criteria: If the value NoExternalBranding is REG_DWORD = 1, this is not a finding.
Fix Text (F-34550r1_fix)
Set the policy value for User Configuration -> Administrative Templates -> Windows Components -> Internet Explorer -> "Disable external branding of Internet Explorer" to “Enabled”.