18.8.22.1.4 Ensure 'Turn off Internet Connection Wizard if URL connection is referring to Microsoft.com' is set to 'Enabled'

Information

This policy setting specifies whether the Internet Connection Wizard can connect to Microsoft to download a list of Internet Service Providers (ISPs).

The recommended state for this setting is: 'Enabled'.

Rationale:
In an enterprise managed environment we want to lower the risk of a user unknowingly exposing sensitive data.

Solution

To establish the recommended configuration via GP, set the following UI path to 'Enabled':


Computer Configuration\Policies\Administrative Templates\System\Internet Communication Management\Internet Communication settings\Turn off Internet Connection Wizard if URL connection is referring to Microsoft.com


Note: This Group Policy path is provided by the Group Policy template 'ICM.admx/adml' that is included with all versions of the Microsoft Windows Administrative Templates.

Impact:
The 'Choose a list of Internet Service Providers' path in the Internet Connection Wizard causes the wizard to exit. This prevents users from retrieving the list of ISPs, which resides on Microsoft servers.

See Also

https://workbench.cisecurity.org/files/1949

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(10), CCE|CCE-37163-3, CSCv6|13

Plugin: Windows

Control ID: 405f82b6c92cc99bfe1a6eec27072cddf68996fff639749263aa4f3da5ac539f