02.11.2014 Views

untangling_the_web

untangling_the_web

untangling_the_web

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

DID: 4046925<br />

UNCLASSIFIEOhTOR OFfiCIAL liSE ONLY<br />

• Downloads<br />

o File Download [Enable]<br />

o Font Download [Prompt]<br />

• Microsoft VM<br />

o Java permissions [High Safety]<br />

• Miscellaneous<br />

o<br />

o<br />

o<br />

o<br />

o<br />

o<br />

o<br />

o<br />

o<br />

o<br />

o<br />

• Scripting<br />

o<br />

Access data sources across domains [Disable]<br />

Allow META REFRESH [Enable]<br />

Display mixed content [Prompt]<br />

Don't prompt for client certificate selection ... [Disable]<br />

Drag and drop or copy and paste files [Enable or Prompt]<br />

Installation of desktop items [Disable]<br />

Launching programs and files in an IFRAME [Disable]<br />

Navigate sub-frames across different domains [Enable or Prompt]<br />

Software channel permissions [High Safety]<br />

Submit nonencrypted form data [Enable]<br />

Userdata persistence [Disable]<br />

Active scripting [Disable]<br />

o Allow paste operations via script [Disable]<br />

o Scripting of Java applets [Disable]<br />

• User Au<strong>the</strong>ntication: Automatic logon only in Intranet zone<br />

As a general rule, do not rely upon sliders to determine your security settings. These<br />

settings will affect your browsing. Some <strong>web</strong>sites require ActiveX or scripting. If you<br />

want to run ActiveX or scripts on any <strong>web</strong>site, you can ei<strong>the</strong>r turn this feature on<br />

temporarily or add <strong>the</strong> site to <strong>the</strong> Trusted sites zone, though I would be very, very<br />

careful about which sites you add.<br />

You can add Web sites by selecting <strong>the</strong> Trusted sites icon, and pressing <strong>the</strong> Sites<br />

button. The default setting only lets you add secure sites (sites using https);<br />

however, if you uncheck <strong>the</strong> Require server verification (https:) for all sites in<br />

this zone, you can add any site.<br />

528 UNCLASSIFIEOIIFOR OFFICIAL I::JSE ONLY

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!