EDGE-00-000001 - User control of proxy settings must be disabled.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This action configures the proxy settings for Microsoft Edge.

If this policy is enabled, Microsoft Edge ignores all proxy-related options specified from the command line.

If this policy is not configured, users can choose their own proxy settings.

This policy overrides the following individual policies:
- ProxyMode.
- ProxyPacUrl.
- ProxyServer.
- ProxyBypassList.

Setting the ProxySettings policy accepts the following fields:
- ProxyMode, which allows for the proxy server used by Microsoft Edge to be specified and prevents users from changing proxy settings.
- ProxyPacUrl, a URL to a proxy .pac file.
- ProxyServer, a URL for the proxy server.
- ProxyBypassList, a list of proxy hosts that Microsoft Edge bypasses.

For ProxyMode, the following values have the noted impact:
- direct, a proxy is never used and all other fields are ignored.
- system, the system's proxy is used and all other fields are ignored.
- auto_detect, all other fields are ignored.
- fixed_servers, the ProxyServer and ProxyBypassList fields are used.
- pac_script, the ProxyPacUrl and ProxyBypassList fields are used.

Solution

Set the policy value for 'Computer Configuration/Administrative Templates/Microsoft Edge/Proxy server/Proxy Settings' to 'Enabled' and define a value for 'ProxyMode'.

'ProxyMode' must be defined and set to one of the following: 'direct', 'system', 'auto_detect', 'fixed_servers', or 'pac_script'.

Consult Microsoft documentation for proper configuration of the text string required to define the 'Proxy Settings' value.

Example: {'ProxyMode': 'fixed_servers', 'ProxyServer': '127.0.0.1:8080'}

'ProxyPacUrl', 'ProxyServer', or 'ProxyBypassList' are optional.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Edge_V2R4_STIG.zip

Item Details

References: CAT|III, CCI|CCI-001414, Rule-ID|SV-235719r1156558_rule, STIG-ID|EDGE-00-000001, Vuln-ID|V-235719

Plugin: Windows

Control ID: cf657d52bb07886def5dca811fea09f3226e01a0c8a1edc9589287f4c9c10129