Prevent users and apps from accessing dangerous websites - EnableNetworkProtection

Information

Enable or disable Windows Defender Exploit Guard network protection to prevent employees from using any application to access dangerous domains that may host phishing scams exploit-hosting sites and other malicious content on the Internet. Enabled: Specify the mode in the Options section: -Block: Users and applications will not be able to access dangerous domains -Audit Mode: Users and applications can connect to dangerous domains however if this feature would have blocked access if it were set to Block then a record of the event will be in the event logs. Disabled: Users and applications will not be blocked from connecting to dangerous domains. Not configured: Same as Disabled.

Solution

Policy Path: Windows Components\Windows Defender Antivirus\Windows Defender Exploit Guard\Network Protection
Policy Setting Name: Prevent users and apps from accessing dangerous websites

See Also

https://blogs.technet.microsoft.com/secguide/2018/04/30/security-baseline-for-windows-10-april-2018-update-v1803-final/

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-3c.2.

Plugin: Windows

Control ID: 70f4b5d81ce78864ec9cc4798b1e18e1cca2d65e65810b8cbc2c169e26ccb1b1