1.18.1 (L1) Ensure 'Enable startup boost' is set to 'Disabled'

Information

This policy setting allows Microsoft Edge processes to start at OS sign-in and restart in background after the last browser window is closed.

If Microsoft Edge is running in background mode, the browser might not close when the last window is closed, and the browser won't be restarted in background when the window closes. See the

BackgroundModeEnabled (Continue running background apps after Microsoft Edge closes)

policy for information about what happens after configuring Microsoft Edge background mode behavior.

The recommended state for this setting is: Disabled

Note: The startup boost policy may initially be configured off or on by the user; the user can configure its behavior in edge://settings/system.

Allowing processes from the browser to run in the background could allow a malicious script or code to continue running once the browser windows has been closed.

Solution

To establish the recommended configuration via GP, set the following UI path to Disabled :

Computer Configuration\Policies\Administrative Templates\Microsoft Edge\Performance\Enable startup boost

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MSEdge.admx/adml that can be downloaded from:

Download Microsoft Edge for Business - Microsoft

.

Impact:

Users will experience normal browser start-up times which may seem slow in comparison to Startup boost.

See Also

https://workbench.cisecurity.org/benchmarks/18501

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|9.2

Plugin: Windows

Control ID: 52b74792ad330e91d632dffa326d2a969a72d6a7cce3d4a72a7e484d377f3106