Skip to content

Microsoft Edge Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000141

    Group
  • SRG-APP-000039

    Group
  • User control of proxy settings must be disabled.

    This action configures the proxy settings for Microsoft Edge. If this policy is enabled, Microsoft Edge ignores all proxy-related options specified from the command line. If this policy is not co...
    Rule Low Severity
  • Bypassing of Microsoft Defender SmartScreen warnings about downloads must be disabled.

    This policy setting allows a decision to be made on whether users can override Microsoft Defender SmartScreen warnings about unverified downloads. If this setting is enabled, users cannot ignore M...
    Rule Medium Severity
  • The list of domains for which Microsoft Defender SmartScreen will not trigger warnings must be allowlisted if used.

    Configure the list of Microsoft Defender SmartScreen trusted domains. This means Microsoft Defender SmartScreen will not check for potentially malicious resources, such as phishing software and oth...
    Rule Low Severity
  • The default search provider must be set to use an encrypted connection.

    Allows a list of list of up to 10 search engines to be configured, one of which must be marked as the default search engine. The encoding does not need to be specified. Starting in Microsoft Edge 8...
    Rule Medium Severity
  • Network prediction must be disabled.

    Enables network prediction and prevents users from changing this setting. This controls DNS prefetching, TCP and SSL pre-connection, and pre-rendering of web pages. If this policy is not configur...
    Rule Medium Severity
  • Importing of browsing history must be disabled.

    Allows users to import their browsing history from another browser into Microsoft Edge. If this policy is enabled, the Browsing history check box is automatically selected in the Import browser da...
    Rule Medium Severity
  • Importing of open tabs must be disabled.

    Allows users to import open and pinned tabs from another browser into Microsoft Edge. If this policy is enabled, the Open tabs check box is automatically selected in the Import browser data dialog...
    Rule Medium Severity
  • AutoplayAllowed must be set to disabled.

    This policy sets the media autoplay policy for websites. The default setting "Not configured" respects the current media autoplay settings and lets users configure their autoplay settings. Settin...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules