STIGQter STIGQter: STIG Summary: Microsoft Edge Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 14 Jan 2021:

Download restrictions must be configured.

DISA Rule

SV-235752r640149_rule

Vulnerability Number

V-235752

Group Title

SRG-APP-000141

Rule Version

EDGE-00-000036

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Set the policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Allow download restrictions" to "enabled" and select "BlockDangerousDownloads" or "Block potentially dangerous or unwanted downloads".

Check Contents

The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Allow download restrictions" must be set to "enabled" with the option value set to "Block potentially dangerous or unwanted downloads".

Use the Windows Registry Editor to navigate to the following key:
HKLM\SOFTWARE\Policies\Microsoft\Edge

If the value for "DownloadRestrictions" is not set to "REG_DWORD = 1", or "REG_DWORD = 2", this is a finding.

Vulnerability Number

V-235752

Documentable

False

Rule Version

EDGE-00-000036

Severity Override Guidance

The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Allow download restrictions" must be set to "enabled" with the option value set to "Block potentially dangerous or unwanted downloads".

Use the Windows Registry Editor to navigate to the following key:
HKLM\SOFTWARE\Policies\Microsoft\Edge

If the value for "DownloadRestrictions" is not set to "REG_DWORD = 1", or "REG_DWORD = 2", this is a finding.

Check Content Reference

M

Target Key

5280

Comments