U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Internet Explorer 7 STIG Version 4, Release 20 Checklist Details (Checklist Revisions)

Supporting Resources:

Target:

Target CPE Name
Microsoft Internet Explorer 7 cpe:/a:microsoft:internet_explorer:7 (View CVEs)

Checklist Highlights

Checklist Name:
Internet Explorer 7 STIG
Checklist ID:
412
Version:
Version 4, Release 20
Type:
Compliance
Review Status:
Archived
Authority:
Governmental Authority: Defense Information Systems Agency
Original Publication Date:
07/27/2012

Checklist Summary:

This Microsoft Internet Explorer Technical Overview, along with the associated Microsoft Internet Explorer Security Technical Implementation Guides (STIG), provides the technical security policies, requirements, and implementation details for applying security concepts to Commercial-Off-The-Shelf (COTS) applications. The nearly universal presence of systems on the desktops of all levels of staff provides tremendous opportunities for office automation, communication, data sharing, and collaboration. Unfortunately, this presence also brings about dependence and vulnerabilities. Malicious and mischievous forces have attempted to take advantage of the vulnerabilities and dependencies to disrupt the work processes of the Government. Compounding this problem is the fact that the vendors of software applications have not expended sufficient effort to provide strong security in their applications. Where applications do offer security options, the default settings typically do not provide a strong security posture.

Checklist Role:

  • Web Browser

Known Issues:

Not provided.

Target Audience:

Not provided.

Target Operational Environment:

  • Managed
  • Specialized Security-Limited Functionality (SSLF)

Testing Information:

The security requirements detailed in this document apply to applications installed on Microsoft Windows Server platforms as well as Microsoft Windows Workstation platforms. On server platforms, the security configuration parameters will be set to at least as restrictive values as those listed in this document.

Regulatory Compliance:

DoD Directive (DoDD) 8500.1 DoD Directive (DoDD) 8500.2

Comments/Warnings/Miscellaneous:

Comments or proposed revisions to this document should be sent via e-mail to fso_spt@disa.mil. DISA FSO will coordinate all change requests with the relevant DoD organizations before inclusion in this document

Disclaimer:

Not provided.

Product Support:

Comments or proposed revisions to this document should be sent via e-mail to fso_spt@disa.mil. DISA FSO will coordinate all change requests with the relevant DoD organizations before inclusion in this document

Point of Contact:

disa.stig_spt@mail.mil

Sponsor:

Not provided.

Licensing:

Not provided.

Change History:

Changed status from "under review" to "final" - 31 August 2015
Version 4, Release 19 - 31 July 2015
Changed status from "Under Review" to "Final" - 03 June 2015
Version 4, Release 14 - 25 July 2014
Version 4, Release 13 - 25 April 2014
Version 4, Release 12 - 24 January 2014
Version 4, Release 11 - 25 October 2013
Version 4, Release 10 - 26 April 2013
Version 4, Release 9 - 25 January 2013
Version 4, Release 8 - 26 October 2012
Version 4, Release 7 - 27 July 2012
Version 4, Release 6 - 27 April 2012
Version 4, Release 5 - 29 July 2011
Version 4, Release 4 - 29 April 2011
Version 4, Release 3 - 28 January 2011
Version 4, Release 2 - 23 April 2010
Version 4, Release 1 - 09 December 2009
Version 4, Release 15 - 30 October 2014
Version 4, Release 16 - 15 December 2014
Version 4, Release 17 - 23 January 2015
Updated URL to reflect change to the DISA website - http --> https
moved to archive status - 4/15/19
Updated URLs - 6/24/19
updated URLs - 9/11/19

Dependency/Requirements:

URL Description

References:

Reference URL Description

NIST checklist record last modified on 09/11/2019