Skip to content

Microsoft Edge Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Importing of browser settings must be disabled.

    <VulnDiscussion>Allows users to import browser settings from another browser into Microsoft Edge. If this policy is enabled, the Browser set...
    Rule Low Severity
  • The default search provider must be set to use an encrypted connection.

    <VulnDiscussion>Allows a list of list of up to 10 search engines to be configured, one of which must be marked as the default search engine. ...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Data Synchronization must be disabled.

    &lt;VulnDiscussion&gt;Disables data synchronization in Microsoft Edge. This policy also prevents the sync consent prompt from appearing. If this p...
    Rule Low Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Network prediction must be disabled.

    &lt;VulnDiscussion&gt;Enables network prediction and prevents users from changing this setting. This controls DNS prefetching, TCP and SSL pre-con...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Search suggestions must be disabled.

    &lt;VulnDiscussion&gt;Enables web search suggestions in the Microsoft Edge Address Bar and Auto-Suggest List, and prevents users from changing this...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Importing of autofill form data must be disabled.

    &lt;VulnDiscussion&gt;Allows users to import autofill form data from another browser into Microsoft Edge. If this policy is enabled, the option to...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Importing of browsing history must be disabled.

    &lt;VulnDiscussion&gt;Allows users to import their browsing history from another browser into Microsoft Edge. If this policy is enabled, the Brows...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Importing of home page settings must be disabled.

    &lt;VulnDiscussion&gt;Allows users to import their home page setting from another browser into Microsoft Edge. If this policy is enabled, the opti...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Importing of open tabs must be disabled.

    &lt;VulnDiscussion&gt;Allows users to import open and pinned tabs from another browser into Microsoft Edge. If this policy is enabled, the Open ta...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Importing of payment info must be disabled.

    &lt;VulnDiscussion&gt;Allows users to import payment info from another browser into Microsoft Edge. If this policy is enabled, the payment info ch...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules