Prevent users and apps from accessing dangerous websites

Information

Enable or disable Windows Defender Exploit Guard network protection to prevent employees from using any application to access dangerous domains that may host phishing scams, exploit-hosting sites, and other malicious content on the Internet.
Enabled:
Specify the mode in the Options section:
-Block: Users and applications will not be able to access dangerous domains
-Audit Mode: Users and applications can connect to dangerous domains, however if this feature would have blocked access if it were set to Block, then a record of the event will be in the event logs.
Disabled:
Users and applications will not be blocked from connecting to dangerous domains.
Not configured:
Same as Disabled.

Solution

Policy Path: Windows Components\Windows Defender Antivirus\Windows Defender Exploit Guard\Network Protection
Policy Setting Name: Prevent users and apps from accessing dangerous websites

See Also

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-v1809-and-windows-server/ba-p/701082/

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-3c.2.

Plugin: Windows

Control ID: 04c466b97a7c476da40f646fcfed8787b8043ecb70f05be05d3e0d10998ea038