Back

Configure the "Loose XAML" setting in limited functionality environments properly.


CONTROL ID
02240
CONTROL TYPE
Configuration
CLASSIFICATION
Preventive

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Configure Internet Browser security options according to organizational standards., CC ID: 02166

There are no implementation support Controls.


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • The "Loose XAML" setting should be configured correctly for the Internet Zone. Technical Mechanisms: Local Internet Options: GPO Settings:[Computer Configuration | User Configuration]/Network/Internet Explorer/Internet Control Panel/Security Page/Internet Zone Registry Keys:[HKLM | HKCU]\Software… (CCE-3751-5, Common Configuration Enumeration List, Combined XML: Internet Explorer 7, 5.20130214)
  • The "Loose XAML" setting should be configured correctly for the Restricted Sites Zone. Technical Mechanisms: Local Internet Options: GPO Settings:[Computer Configuration | User Configuration]/Network/Internet Explorer/Internet Control Panel/Security Page/Restricted Sites Zone Registry Keys:[HKLM … (CCE-3590-7, Common Configuration Enumeration List, Combined XML: Internet Explorer 7, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Internet Zone. Technical Mechanisms: (1) GPO Settings: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Internet Zone\Loose XAML files (2) Registry … (CCE-10672-4, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Restricted Sites Zone. Technical Mechanisms: (1) GPO Settings: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Restricted Sites Zone\Loose XAML fil… (CCE-10178-2, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Internet Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Internet Zone\Loose XAML files HKEY_CURRENT_USER\Software\Pol… (CCE-15404-7, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Locked-Down Trusted Sites Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Trusted Sites Zone\Loose XAML fi… (CCE-16844-3, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Locked-Down Restricted Sites Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Restricted Sites Zone\Loose X… (CCE-15096-1, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Locked-Down Internet Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Internet Zone\Loose XAML files HKEY_C… (CCE-15935-0, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Locked-Down Intranet Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Intranet Zone\Loose XAML files HKEY_C… (CCE-16501-9, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Locked-Down Local Machine Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Local Machine Zone\Loose XAML fi… (CCE-15941-8, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Local Machine Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Local Machine Zone\Loose XAML files HKEY_CURRENT_USER\So… (CCE-16099-4, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Restricted Sites Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Restricted Sites Zone\Loose XAML files HKEY_CURRENT_U… (CCE-16139-8, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Locked-Down Internet Zone. Technical Mechanisms: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Internet Zone\Loose XAML files HKEY_LO… (CCE-16347-7, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Locked-Down Trusted Sites Zone. Technical Mechanisms: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Trusted Sites Zone\Loose XAML fil… (CCE-16601-7, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Locked-Down Local Machine Zone. Technical Mechanisms: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Local Machine Zone\Loose XAML fil… (CCE-15017-7, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Locked-Down Intranet Zone. Technical Mechanisms: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Locked-Down Intranet Zone\Loose XAML files HKEY_LO… (CCE-16183-6, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Intranet Zone. Technical Mechanisms: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Intranet Zone\Loose XAML files HKEY_LOCAL_MACHINE\Software\Pol… (CCE-15840-2, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Intranet Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Intranet Zone\Loose XAML files HKEY_CURRENT_USER\Software\Pol… (CCE-16057-2, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Local Machine Zone. Technical Mechanisms: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Local Machine Zone\Loose XAML files HKEY_LOCAL_MACHINE\So… (CCE-15713-1, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" machine setting should be configured correctly for the Trusted Sites Zone. Technical Mechanisms: Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Trusted Sites Zone\Loose XAML files HKEY_LOCAL_MACHINE\So… (CCE-16002-8, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML files" current user setting should be configured correctly for the Trusted Sites Zone. Technical Mechanisms: User Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Security Page\Trusted Sites Zone\Loose XAML files HKEY_CURRENT_USER\So… (CCE-15852-7, Common Configuration Enumeration List, Combined XML: Microsoft Internet Explorer 8, 5.20130214)
  • The "Loose XAML" setting should be configured correctly for the Internet Zone. (oval:gov.nist.fdcc.ie7:def:240, FDCC Windows IE7 SCAP content using OVAL (fdcc-ie7-oval.xml, fdcc-ie7-patches.xml), Version 5.4)
  • The "Loose XAML" setting should be configured correctly for the Restricted Sites Zone. (oval:gov.nist.fdcc.ie7:def:275, FDCC Windows IE7 SCAP content using OVAL (fdcc-ie7-oval.xml, fdcc-ie7-patches.xml), Version 5.4)
  • Loose or un-compiled XAML files - Internet Zone - Local Computer (LooseXAMLFiles_InternetZone_LocalComputer, NIST SCAP Microsoft Internet Explorer Version 7 (fdcc-ie7-xccdf.xml), FDCC IE7 (1.2) SCAP Content - OVAL 5.4)
  • Loose or un-compiled XAML files - Restricted Sites Zone - Local Computer (LooseXAMLFiles_RestrictedSitesZone_LocalComputer, NIST SCAP Microsoft Internet Explorer Version 7 (fdcc-ie7-xccdf.xml), FDCC IE7 (1.2) SCAP Content - OVAL 5.4)
  • These are eXtensible Application Markup Language (XAML) files. XAML is an XML-based declarative markup language commonly used for creating rich user interfaces and graphics that leverage the Windows Presentation Foundation. (xccdf_gov.nist_rule_LooseXAMLFiles_RestrictedSitesZone_LocalComputer, oval:gov.nist.USGCB.ie7:def:275, oval:gov.nist.USGCB.ie7:tst:3692, oval:gov.nist.USGCB.ie7:obj:166, oval:gov.nist.USGCB.ie7:ste:3379, USGCB: Guidance for Securing Microsoft Internet Explorer 7, v1.2.3.1)
  • These are eXtensible Application Markup Language (XAML) files. XAML is an XML-based declarative markup language commonly used for creating rich user interfaces and graphics that leverage the Windows Presentation Foundation. (xccdf_gov.nist_rule_LooseXAMLFiles_InternetZone_LocalComputer, oval:gov.nist.USGCB.ie7:def:240, oval:gov.nist.USGCB.ie7:tst:3880, oval:gov.nist.USGCB.ie7:obj:117, oval:gov.nist.USGCB.ie7:ste:3207, USGCB: Guidance for Securing Microsoft Internet Explorer 7, v1.2.3.1)
  • These are eXtensible Application Markup Language (XAML) files. XAML is an XML-based declarative markup language commonly used for creating rich user interfaces and graphics that leverage the Windows Presentation Foundation. (xccdf_gov.nist_rule_LooseXAMLFiles_InternetZone_LocalComputer, oval:gov.nist.USGCB.ie8:def:31032, oval:gov.nist.USGCB.ie8:tst:31032, oval:gov.nist.USGCB.ie8:obj:31032, oval:gov.nist.USGCB.ie8:ste:31032, USGCB: Guidance for Securing Microsoft Internet Explorer 8, v1.2.3.1)
  • These are eXtensible Application Markup Language (XAML) files. XAML is an XML-based declarative markup language commonly used for creating rich user interfaces and graphics that leverage the Windows Presentation Foundation. (xccdf_gov.nist_rule_LooseXAMLFiles_RestrictedSitesZone_LocalComputer, oval:gov.nist.USGCB.ie8:def:31070, oval:gov.nist.USGCB.ie8:tst:31070, oval:gov.nist.USGCB.ie8:obj:31070, oval:gov.nist.USGCB.ie8:ste:31070, USGCB: Guidance for Securing Microsoft Internet Explorer 8, v1.2.3.1)