Back

Configure the "Turn off Crash Detection" setting in Internet Explorer properly.


CONTROL ID
04345
CONTROL TYPE
Configuration
CLASSIFICATION
Preventive

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Configure Internet Browser security options according to organizational standards., CC ID: 02166

There are no implementation support Controls.


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • This setting sets the crash detection feature of Internet Explorer. The Turn Off Crash Detection setting should be Enabled, because sensitive information may be located in the crash report. (Pg 83, Microsoft Windows Vista Security Guide Appendix A: Security Group Policy Settings)
  • Errors should not be reported to Microsoft. The "Turn off crash detection" value should be set to Enabled. The "HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\NoCrashDetection" registry value should be set to 1. (ยง 3.7.1.8 (5.115), DISA Windows VISTA Security Checklist, Version 6 Release 1.11)
  • The "Turn Off Crash Detection" setting should be configured correctly. (oval:gov.nist.fdcc.ie7:def:487, FDCC Windows IE7 SCAP content using OVAL (fdcc-ie7-oval.xml, fdcc-ie7-patches.xml), Version 5.4)
  • Turn Off Crash Detection - Local Computer (TurnOffCrashDetection_LocalComputer, NIST SCAP Microsoft Internet Explorer Version 7 (fdcc-ie7-xccdf.xml), FDCC IE7 (1.2) SCAP Content - OVAL 5.4)
  • This setting manages the crash detection feature of Internet Explorer. The Turn Off Crash Detection setting should be Enabled, because sensitive information may be located in the crash report. (Pg 91, NSA Guide to Security Microsoft Windows XP)