Check: EDGE-00-000052
Microsoft Edge STIG:
EDGE-00-000052
(in versions v2 r2 through v1 r1)
Title
The download location prompt must be configured. (Cat III impact)
Discussion
This setting provides positive feedback before a download starts, limiting the possibility of inadvertent downloads without notifying the user.
Check Content
The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Ask where to save downloaded files" must be set to "enabled". Use the Windows Registry Editor to navigate to the following key: HKLM\SOFTWARE\Policies\Microsoft\Edge If the value for "PromptForDownloadLocation" is not set to "REG_DWORD = 1", this is a finding.
Fix Text
Set the policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Ask where to save downloaded files" to "enabled".
Additional Identifiers
Rule ID: SV-235765r960963_rule
Vulnerability ID: V-235765
Group Title: SRG-APP-000141
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |