Microsoft Releases “32 Step” Internet Explorer 7 Desktop Security Guide

 
Internet Explorer 7 Desktop Security Guide examines some of the new features and settings that can be modified to provide a more "locked down" security configuration. 
Internet Explorer 7 Settings "32 Step" Checklist
 
    • Zone Security
    1. Enable Zone Elevation Protection
    2. Do not allow users to add or delete sites from Security Zones
    3. Do not allow users to change policies for Security Zones
    • Certificate Security
    1. Enable Prevent Ignoring Certificate Errors
    • Active Content Security
    1. Restrict ActiveX Install
    2. Add ActiveX controls and plug-ins to pre-approved list
    3. Disable Allow active scripting in response to specific threats
    4. Enable Scripted Window Security Restrictions
    • Reduce Application Privilege
    1. Use Protected Mode on Windows Vista
    2. Use DropMyRights on Windows XP
    • Privacy Settings
    1. Set the Privacy Slider at least to Medium
    2. Empty Temporary Internet Files folder when the browser is closed
    3. Set Form Autocomplete options to Disabled
    4. Disable Password Caching
    5. Configure Logon options for Each Security Zone
    6. Enable the Phishing Filter
    • Other Security Settings
    1. Disable Automatic Install of Internet Explorer Components
    2. Disable Periodic Check for Internet Explorer Software Updates
    3. Disable Software Update Shell Notifications on Program Launch
    4. Make proxy settings per machine (rather than per user)
    5. Turn off Crash Protection
    6. Disable page transitions
    7. Restrict File Downloads
    8. Disable Allow File Downloads for Restricted Zone
    9. Enable Data Execution Prevention
    10. Do not allow users to enable or disable add-ons
    11. Ensure Consistent MIME Handling
    12. Enable MIME Sniffing Safety Features
    13. Display Information Bar
    14. Enable MK Protocol Security Restriction
    15. Enable Object Caching Protection
    16. Block attachments that could contain a virus in Outlook Express

About blakehandler

BLAKE is a Microsoft MVP and award winning programmer with over 20 years experience providing complete Windows and networking support for small to medium sized businesses. BLAKE was also a Personal Technology Coach for residential clients on the Los Angeles West Side. BLAKE now works full-time for a major media company.
This entry was posted in Know Where Know-How. Bookmark the permalink.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Connecting to %s