UCF STIG Viewer Logo

Access to history URL must be disabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-75165 DTBC-0052 SV-89845r1_rule Medium
Description
Regardless of controls in place to safeguard the Chrome browser history users may still delete individual items via the Chrome://History URL. In order to protect against this occurrence access to Chrome://History must be blacklisted.
STIG Date
Google Chrome Current Windows STIG 2017-07-28

Details

Check Text ( None )
None
Fix Text (F-81777r5_fix)
Windows group policy:
1. Open the group policy editor tool with gpedit.msc
2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Google\Google Chrome\
Policy Name: Block access to a list of URLs
Policy State: Enabled
Policy Value 2: Chrome://History