When your users type about:config into Firefox’s URL bar to change their browser preferences, they’re warned “Here be dragons.” To shield your users from this stressful situation and prevent them from experimenting on their own and causing instability in their browser, you can create a policy to enforce browser settings that fits your business needs.
This is a device level policy that applies system-wide to the device and all of its users. You can bind this policy to individual devices or device groups. For policies that apply to a specific user's profile across devices, see Get Started: Policies and Learn More section of this article.
You can use this policy to remotely apply browser settings to Windows systems running Firefox. The policy governs the use of Firefox, such as passwords, site and form history, data security by blocking autocomplete features, and the downloading experience. For general information on JumpCloud Policies, see Getting Started: Policies.
Creating the Policy
To create a Mozilla Firefox Browser Preferences policy for Windows devices, do the following:
Selecting the Policy Template
- Log in to the JumpCloud Admin portal.
If your data is stored outside of the US, check which login URL you should be using depending on your region. If your organization uses LDAP, RADIUS, or requires firewall allow list configuration, the Fully Qualified Domain Names (FQDNs) will also be region specific. See JumpCloud Data Centers for the URLs, FQDNs, and IP addresses.
- Go to Device Management > Policy Management. The Policy Management page is displayed.
- On the Policy Management page, click +Add New.
- Select Device Policy to assign the policy to devices and device groups. On the New Device Policy page:
- Select the Windows tab.
- Search and select the policy name and click Configure. The Details tab of the policy is displayed.
- On the Details tab, configure the required policy configuration settings.
- (Optional) In the Policy Name field, enter a new name for the policy or keep the default. Policy names must be unique.
- (Optional) In the Policy Notes field, enter details such as creation date of the policy, and information on testing and deployment of the policy.
Configuring the Policy
In this policy you can configure the following settings:
- Disable password manager - Control if Firefox stores credentials so they are populated the next time the user visits a website.
- Don’t allow users to create a master password - If a system is shared with multiple users, a master password encrypts all of an individual’s passwords for protection from the other users. Setting a master password prompts a user to enter it once for each Firefox session.
- Don’t allow passwords to be revealed in saved logins - If a master password is not set, then passwords can be unmasked in Password Manager and Settings. Disabling this option can make it difficult for users to recover a forgotten password.
- Don’t remember form and search history - After a user enters something into a form on a web page, control whether Firefox stores that previous search entry and makes it available to reuse.
- Disable private browsing - Private means Firefox doesn’t save a user’s browsing information, such as history and cookies. Use this setting to control whether users can browse and leave no trace of the sites they visit after they end the session.
- Ask where to save a file before downloading - When a user downloads a file, control whether Firefox asks the user where to save it. If this prompt is disabled, the file is automatically saved to the downloads folder.
- Change default download location for users - When a user downloads a file, you can specify where the file is saved without asking the user. If you set Ask where to save a file before downloading to Enabled, then the default location you specify here is ignored.
Applying the Policy
- (Optional) Select the Policy Groups tab. Select one or more policy groups where you want to add this policy.
- Select the Device Groups tab. Select one or more device groups where you want to apply this policy to. For device groups with multiple OS member types, the policy only applies when a user logs into a supported Windows device that is enrolled in MDM.
- Or, select the Devices tab. Select one or more devices where you want to apply this policy.
- Click Create Policy. A success message is displayed indicating the completion of policy creation.
Viewing Policy Status
- Select the Status tab.
- To see the last Result Log for a device where this policy is applied, click view.
- If any errors occur, they're listed in Exit Status. If you have an Exit Status of 0, no errors occurred when applying or enforcing this policy.