18.9.48.10 Ensure 'Prevent access to the about:flags page in Microsoft Edge' is set to 'Enabled'

Information

This policy setting lets you decide whether employees can access the about:flags page, which is used to change developer settings and to enable experimental features.

The recommended state for this setting is: Enabled.

Rationale:

Users should not have access to developer settings and experimental features. Vulnerabilities could be introduced if these settings are not properly managed.

Impact:

Employees will not be able to access the about:flags page.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled:

Computer Configuration\Policies\Administrative Templates\Windows Components\Microsoft Edge\Prevent access to the about:flags page in Microsoft Edge

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MicrosoftEdge.admx/adml that is included with the Microsoft Windows 10 Release 1607 & Server 2016 Administrative Templates (or newer).

Default Value:

Disabled. (Employees can access the about:flags page.)

See Also

https://workbench.cisecurity.org/files/2992