IE 7 Recommended Security
Settings
- .NET Framework
• Loose XAML: Disable
• XAML browser applications: Disable
• XPS documents: Disable
- ActiveX controls and plug-ins
• Binary and script behaviors: Disable
• Run ActiveX controls and plug-ins: Disable
• Script ActiveX controls marked safe for scripting: Disable
- Downloads
• Font download: Disable
• Enable .NET Framework setup: Disable
- Miscellaneous
• Allow META REFRESH: Disable
• Allow Web pages to use restricted protocols for active content:
Disable
• Display mixed content: Disable
• Drag and drop or copy and paste files: Disable
• Installation of desktop items: Disable
• Launching applications and unsafe files: Disable
• Launching programs and files in an IFRAME: Disable
• Navigate sub-frames across different domains: Disable
• Software channel permissions: High Safety
• Submit non-encrypted form data: Disable
• Userdata persistence: Disable
• Web sites in less privileged Web content zone can navigate into this
zone: Disable
- Scripting
• Active scripting: Disable
• Allow programmatic Clipboard access: Disable
• Scripting of Java applets: Disable