Information
This policy setting determines whether users will be prompted for non user-initiated file
downloads. Regardless of this setting, users will receive file download dialogs for user-
initiated downloads. The recommended state for this setting is- Enabled-Disable.
*Rationale*
Users may accept downloads that they did not request, those downloaded files may include
malicious code.
Solution
To establish the recommended configuration via Group Policy, set the following UI path to
Enabled.
Computer Configuration\Administrative Templates\Windows Components\Internet
Explorer\Internet Control Panel\Security Page\Restricted Sites Zone\Automatic
prompting for file downloadsThen set the Automatic prompting for file downloads option to Disable.
Impact-If you enable this setting, users will receive a file download dialog for automatic download
attempts. If you disable or do not configure this setting, file downloads that are not user-
initiated will be blocked, and users will see the Information Bar instead of the file
download dialog. Users can then click the Information Bar to allow the file download
prompt.
Default Value-Disabled