1. Home
  2. Security Hardening
  3. DISA STIG Edge V1R4
  4. EDGE-00-000042 – Extensions that are approved for use must be allowlisted.

EDGE-00-000042 – Extensions that are approved for use must be allowlisted.

Details

By default, all extensions are allowed. However, if all extensions are blocked by setting the ‘ExtensionInstallBlockList’ policy to ‘*,’ users can only install extensions defined in this policy.

Solution

Set the policy value for ‘Computer Configuration/Administrative Templates/Microsoft Edge/Extensions/Allow specific extensions to be installed’ to ‘Enabled’. A list of allowlisted extensions may then be specified.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Windows.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles