Skip to content

Microsoft Edge Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Microsoft Defender SmartScreen must be enabled.

    <VulnDiscussion>This policy setting configures Microsoft Defender SmartScreen, which provides warning messages to help protect users from po...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender SmartScreen must be configured to block potentially unwanted apps.

    &lt;VulnDiscussion&gt;This policy setting configures blocking for potentially unwanted apps with Microsoft Defender SmartScreen. Potentially unwant...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • The download location prompt must be configured.

    &lt;VulnDiscussion&gt;This setting provides positive feedback before a download starts, limiting the possibility of inadvertent downloads without n...
    Rule Low Severity
  • SRG-APP-000148

    <GroupDescription></GroupDescription>
    Group
  • Tracking of browsing activity must be disabled.

    &lt;VulnDiscussion&gt;The setting allows websites to be blocked from tracking users' web-browsing activity. If this policy is disabled or is not c...
    Rule Medium Severity
  • SRG-APP-000149

    <GroupDescription></GroupDescription>
    Group
  • A website's ability to query for payment methods must be disabled.

    &lt;VulnDiscussion&gt;This setting determines whether websites can check if the user has payment methods saved. If this policy is disabled, websit...
    Rule Medium Severity
  • SRG-APP-000151

    <GroupDescription></GroupDescription>
    Group
  • Suggestions of similar web pages in the event of a navigation error must be disabled.

    &lt;VulnDiscussion&gt;This setting allows Microsoft Edge to issue a connection to a web service to generate URL and search suggestions for connecti...
    Rule Medium Severity
  • SRG-APP-000152

    <GroupDescription></GroupDescription>
    Group
  • User feedback must be disabled.

    &lt;VulnDiscussion&gt;Microsoft Edge uses the Edge Feedback feature (enabled by default) to allow users to send feedback, suggestions, or customer ...
    Rule Medium Severity
  • SRG-APP-000153

    <GroupDescription></GroupDescription>
    Group
  • The collections feature must be disabled.

    &lt;VulnDiscussion&gt;This setting allows users to access the Collections feature, where they can collect, organize, share, and export content more...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • The Share Experience feature must be disabled.

    &lt;VulnDiscussion&gt;If this policy is set to "ShareAllowed" (the default), users will be able to access the Windows 10 Share experience from the ...
    Rule Medium Severity
  • SRG-APP-000141

    <GroupDescription></GroupDescription>
    Group
  • Guest mode must be disabled.

    &lt;VulnDiscussion&gt;Enabling Guest mode allows the use of guest profiles in Microsoft Edge. In a guest profile, the browser does not import brows...
    Rule Medium Severity
  • SRG-APP-000156

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules