Check: EDGE-00-000052
Microsoft Edge STIG:
EDGE-00-000052
(in versions v1 r8 through v1 r1)
Title
The download location prompt must be configured. (Cat III impact)
Discussion
This setting provides positive feedback before a download starts, limiting the possibility of inadvertent downloads without notifying the user.
Check Content
The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Ask where to save downloaded files" must be set to "enabled". Use the Windows Registry Editor to navigate to the following key: HKLM\SOFTWARE\Policies\Microsoft\Edge If the value for "PromptForDownloadLocation" is not set to "REG_DWORD = 1", this is a finding.
Fix Text
Set the policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Ask where to save downloaded files" to "enabled".
Additional Identifiers
Rule ID: SV-235765r879587_rule
Vulnerability ID: V-235765
Group Title: SRG-APP-000141
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
The organization configures the information system to provide only essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |