1.120 (L1) Ensure 'Set the time period for update notifications' is set to 'Enabled: 86400000'

Information

This setting does not determine if updates are applied, the policy setting allows setting a time period in which users are notified that Microsoft Edge has been updated and must be closed and re-opened.

The recommended state for this setting is: Enabled: 86400000

This setting is a notification for the end-user informing them that an update has been applied and that the browser must be restarted in order for the update to be completed. Once updates have been pushed by the organization it is pertinent that said update takes effect as soon as possible. Enabling this notification will ensure users restart the browser in a timely fashion.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled: 86400000 :

Computer Configuration\Policies\Administrative Templates\Microsoft Edge\Set the time period for update notifications

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MSEdge.admx/adml that can be downloaded from:

Download Microsoft Edge for Business - Microsoft

.

Impact:

When updates are applied by an organization the end-user will receive a notification after 24 hours that they must restart the browser for updates to complete.

See Also

https://workbench.cisecurity.org/benchmarks/18501

Item Details

Category: RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|RA-5, 800-53|SI-2, 800-53|SI-2(2), CSCv7|3.5

Plugin: Windows

Control ID: bb6060d4da8a1378e2d55cf3b4fb56bf5212e7081ea55ec8da59100b8457477b