1.3.10 (L2) Ensure 'Default setting for third-party storage partitioning' is set to 'Enabled: Block third-party storage partitioning from being enabled.'

Information

This policy setting configures the use of third-party storage partitioning. When using storage partitioning, a site cannot join data across different sites to track the user across the web.

The recommended state for this setting is: Enabled: Block third-party storage partitioning from being enabled.

Third-party storage partitioning can prevent certain types of side-channel cross-site tracking.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled: Block third-party storage partitioning from being enabled. :

Computer Configuration\Policies\Administrative Templates\Microsoft Edge\Cast\Default setting for third-party storage partitioning

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MSEdge.admx/adml that can be downloaded from:

Download Microsoft Edge for Business - Microsoft

.

Impact:

This setting may cause users to experience issues with sites they regularly visit that already grant access to third-parties.

See Also

https://workbench.cisecurity.org/benchmarks/18501

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(10)

Plugin: Windows

Control ID: c9196b464f0c5ddee829187767151193acf7d693312161f65de68838b15206ba