UCF STIG Viewer Logo

Allow Fallback to SSL 3.0 (Internet Explorer) must be disabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-64729 DTBI1100-IE11 SV-79219r3_rule Medium
Description
This parameter ensures only DoD-approved ciphers and algorithms are enabled for use by the web browser by blocking an insecure fallback to SSL when TLS 1.0 or greater fails.
STIG Date
Microsoft Internet Explorer 11 Security Technical Implementation Guide 2017-07-28

Details

Check Text ( None )
None
Fix Text (F-70659r6_fix)
Set the policy value for Computer Configuration >> Administrative Templates >> Windows Components >> Internet Explorer >> Security Features >> "Allow fallback to SSL 3.0 (Internet Explorer)" to "Enabled", and select "No Sites" from the drop-down box.