18.9.45.10 Ensure 'Prevent access to the about:flags page in Microsoft Edge' is set to 'Enabled'

Information

This policy setting lets you decide whether employees can access the about:flags page, which is used to change developer settings and to enable experimental features.

The recommended state for this setting is: Enabled.

Rationale:

Users should not have access to developer settings and experimental features. Vulnerabilities could be introduced if these settings are not properly managed.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled:

Computer Configuration\Policies\Administrative Templates\Windows Components\Microsoft Edge\Prevent access to the about:flags page in Microsoft Edge

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MicrosoftEdge.admx/adml that is included with the Microsoft Windows 10 Release 1607 & Server 2016 Administrative Templates (or newer).

Impact:

Employees will not be able to access the about:flags page.

Default Value:

Disabled. (Employees can access the about:flags page.)

See Also

https://workbench.cisecurity.org/files/2651