1.86 (L1) Ensure 'Dynamic Code Settings' is set to 'Enabled: Prevent the browser process from creating dynamic code'

Information

This policy setting controls the Dynamic Code Settings for Microsoft Edge.

The recommended state for this setting is: Enabled: Prevent the browser process from creating dynamic code.

Leaving this policy in its default state decreases the security of Microsoft Edge by allowing potentially hostile Dynamic Code and third-party code to make changes to Microsoft Edge's behavior.

Solution

To establish the recommended configuration via configuration profiles, set the following Settings Catalog path to Enabled: Prevent the browser process from creating dynamic code :

Microsoft Edge\Dynamic Code Settings

Impact:

Compatibility issues may arise with third-party software (e.g. certain printer drivers) that must run in the browser process.

See Also

https://workbench.cisecurity.org/benchmarks/24642

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-16, CSCv7|8.3

Plugin: Windows

Control ID: 1e742bc64184e34a240ac39861b0e02224b2d092feff88a53c5c6bbd1f513650