1.80 (L1) Ensure 'Disable synchronization of data using Microsoft sync services' is set to 'Enabled'

Information

This policy setting controls whether data synchronization with Microsoft sync services is allowed as well as whether the sync consent prompt appears to users. Examples of synced data include, but are not limited to, history and favorites.

The recommended state for this setting is: Enabled

Data should not be shared with third-party vendors in an enterprise-managed environment.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled :

Computer Configuration\Policies\Administrative Templates\Microsoft Edge\Disable synchronization of data using Microsoft sync services

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MSEdge.admx/adml that can be downloaded from:

Download Microsoft Edge for Business - Microsoft

.

Impact:

Users will be unable to sync data with Microsoft, the prompt for sync consent will also be hidden from the user.

See Also

https://workbench.cisecurity.org/benchmarks/18501

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Windows

Control ID: f6192bfd54d137f83b1fa234aea56550e58197ff46619f92e4617a7489bfbe11