Policy
Allow specified hosts to show Basic Authentication prompts to Office apps
Microsoft Office 5532.1000
Policy overview
Key metadata and intent for this policy.
This policy setting allows you to specify which hosts can show Basic Authentication sign-in prompts to Office apps. By default, all Basic Authentication sign-in prompts are blocked, and the user is shown a message that the sign-in method isn’t allowed. If you enable this policy setting, you need to enter the hosts by name, separating the host names with a semi-colon. For example: server1.contoso.com; server2.fabrikam.com. Warning: Allowing Basic Authentication sign-in prompts isn’t recommended because it’s a security risk. Basic Authentication sign-in prompts from all other hosts will be blocked and the user will be shown a message that the sign-in method isn’t allowed. If you disable or don’t configure this policy setting, all Basic Authentication sign-in prompts will be blocked, and the user will be shown a message that the sign-in method isn’t allowed. Note: This policy setting only applies to subscription versions of Office, such as Microsoft 365 Apps for enterprise, and to subscription versions of Project and Visio. For more information, see https://go.microsoft.com/fwlink/p/?linkid=2199001.
Registry values
How enabled and disabled states update the registry.
No explicit registry values are set for enabled or disabled states.
Policy elements
Inputs and configuration options exposed by this policy.
| Element | Type | Registry mapping | Constraints & behavior |
|---|---|---|---|
Host names: ID L_AuthenticationBasicAuthEnabledHostsID | text | HKCU\software\policies\microsoft\office\16.0\common\identity\basichostallowlist Type REG_SZ | None |
Other policies in this category
Explore related policies at the same level.
- UserActiveX Control InitializationWindows7
- UserAllow Basic Authentication prompts from network proxiesWindows7
- UserAllow file extensions for OLE embeddingWindows7
- UserAllow root or intermediate certificates as VBA trusted publishersWindows 10
- UserAllow VBA to load typelib references by path from untrusted intranet locationsWindows 10
- UserAutomation SecurityWindows7
- UserBlock additional file extensions for OLE embeddingWindows7
- UserBlock all internet macros (ignore trusted locations or publishers)Windows 10
- UserBlock Insecure ProtocolsWindows7
- UserBlock loading of COM/VSTO add-ins registered in HKCUWindows 10
- UserBlock OLE GraphWindows7
- UserBlock OrgChartWindows7