Skip to content

Microsoft Edge Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000456

    Group
  • The version of Microsoft Edge running on the system must be a supported version.

    Security flaws with software applications are discovered daily. Vendors are constantly updating and patching their products to address newly discovered security vulnerabilities. Organizations (incl...
    Rule High Severity
  • SRG-APP-000141

    Group
  • Site isolation for every site must be enabled.

    The "SitePerProcess" policy can be used to prevent users from opting out of the default behavior of isolating all sites. The "IsolateOrigins" policy can be used to isolate additional, finer-grained...
    Rule Medium Severity
  • SRG-APP-000142

    Group
  • Supported authentication schemes must be configured.

    This setting specifies which HTTP authentication schemes are supported. The policy can be configured by using these values: "basic", "digest", "ntlm", and "negotiate". Separate multiple values wit...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • SRG-APP-000141

    Group
  • SRG-APP-000141

    Group
  • The download location prompt must be configured.

    This setting provides positive feedback before a download starts, limiting the possibility of inadvertent downloads without notifying the user.
    Rule Low Severity
  • SRG-APP-000148

    Group
  • Tracking of browsing activity must be disabled.

    The setting allows websites to be blocked from tracking users' web-browsing activity. If this policy is disabled or is not configured, users can set their own level of tracking prevention. Policy...
    Rule Medium Severity
  • SRG-APP-000149

    Group
  • SRG-APP-000151

    Group
  • SRG-APP-000152

    Group
  • User feedback must be disabled.

    Microsoft Edge uses the Edge Feedback feature (enabled by default) to allow users to send feedback, suggestions, or customer surveys and to report any issues with the browser. By default, users can...
    Rule Medium Severity
  • SRG-APP-000153

    Group
  • The collections feature must be disabled.

    This setting allows users to access the Collections feature, where they can collect, organize, share, and export content more efficiently and with Office integration. If this policy is enabled or ...
    Rule Medium Severity
  • SRG-APP-000141

    Group
  • The Share Experience feature must be disabled.

    If this policy is set to "ShareAllowed" (the default), users will be able to access the Windows 10 Share experience from the Settings and More menu in Microsoft Edge to share with other apps on the...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules