1.100 Ensure 'Notify a user that a browser restart is recommended or required for pending updates' is set to 'Enabled: Required - Show a recurring prompt to the user indicating that a restart is required'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This setting determines whether the a notification to restart Microsoft Edge due to an update is recommended or required.

Note: If this setting is set to Enabled: Required - Show a recurring prompt to the user indicating that a restart is required the browser will be automatically restarted based on the RelaunchNotificationPeriod setting which is recommended to be 24 hours.

The recommended state for this setting is: Enabled: Required - Show a recurring prompt to the user indicating that a restart is required.

Rationale:

The end-user will receive a notification informing them that an update has been applied and that the browser must be restarted in order for the update to be completed. Once updates have been pushed by the organization it is pertinent that the update is applied as soon as possible. Enabling this notification will ensure that users restart their browser in a timely fashion.

Impact:

When updates are applied by an organization the end-user will receive a notification after 24 hours that they must restart the browser for updates to complete, after 24 hours the browser will be automatically restarted.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled: Required - Show a recurring prompt to the user indicating that a restart is required:

Computer Configuration\Policies\Administrative Templates\Microsoft Edge\Notify a user that a browser restart is recommended or required for pending updates

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MSEdge.admx/adml that can be downloaded from Microsoft here.

Default Value:

Not Configured - An icon is shown in the browser informing the user to restart Microsoft Edge.

See Also

https://workbench.cisecurity.org/files/4094