Share This Post

GPO / Windows 10

Windows 10 Fall Creators Update GPO: Block Dangerous Websites

With Windows 10 Fall Creators Update ready to deliver on October 17, there are some new Group Policy settings that will be introduced. As these are uncovered, we’ll highlight them here on myITforum.

  • ADMX File: WindowsDefender.admx
  • Overview: Prevent users and apps from accessing dangerous websites
  • Class: Machine
  • Location: Software\Policies\Microsoft\Windows Defender\Windows Defender Exploit Guard\Network Protection
  • Value: EnableNetworkProtection
  • Policy values:  (see details)
  • Details: Enable or disable Windows Defender Exploit Guard network protection to prevent employees from using any application to access dangerous domains that may host phishing scams, exploit-hosting sites, and other malicious content on the Internet.
– Enabled:  Specify the mode in the Options section:
– Block: Users and applications will not be able to access dangerous domains
– Audit Mode: Users and applications can connect to dangerous domains, however if this feature would have blocked access if it were set to Block, then a record of the event will be in the event logs.
– Disabled: Users and applications will not be blocked from connecting to dangerous domains.
– Not configured: Same as Disabled.


Looking for an awesome, no-nonsense technical conference for IT Pros, Developers, and DevOps? IT/Dev Connections kicks off in San Francisco in 2017!

IT/Dev Connections

Share This Post

Leave a Reply