Prevent users and apps from accessing dangerous websites
Jump to overview

Policy overview

Key metadata and intent for this policy.

Computer
Category
Windows Components > Microsoft Defender Antivirus > Microsoft Defender Exploit Guard > Network Protection
Supported on
At least Windows Server 2016, Windows 10 Version 1709

Supported OS tags: Windows10, Windows10RT, Windows11, WindowsServer2016

Enable or disable Microsoft Defender Exploit Guard network protection to prevent employees from using any application to access dangerous domains that may host phishing scams, exploit-hosting sites, and other malicious content on the Internet. Enabled: Specify the mode in the Options section: -Block: Users and applications will not be able to access dangerous domains -Audit Mode: Users and applications can connect to dangerous domains, however if this feature would have blocked access if it were set to Block, then a record of the event will be in the event logs. Disabled: Users and applications will not be blocked from connecting to dangerous domains. Not configured: Same as Disabled.

Internal name
ExploitGuard_EnableNetworkProtection
Policy ID
fb9acd41a0e9
Elements
1

Registry values

How enabled and disabled states update the registry.

No explicit registry values are set for enabled or disabled states.

Policy elements

Inputs and configuration options exposed by this policy.

ScopeElementTypeRegistry mappingConstraints & behaviorCopy
Computer
Prevent users and apps from accessing dangerous websites
ID ExploitGuard_EnableNetworkProtection
enum
Path
Software\Policies\Microsoft\Windows Defender\Windows Defender Exploit Guard\Network Protection
Value name
EnableNetworkProtection
Type
REG_DWORD
Options: Disable (Default) (0), Block (1), Audit Mode (2)
Prevent users and apps from accessing dangerous websites
Computer · Type enum
Registry mapping
Path
Software\Policies\Microsoft\Windows Defender\Windows Defender Exploit Guard\Network Protection
Value name
EnableNetworkProtection
Type
REG_DWORD
Details
Options: Disable (Default) (0), Block (1), Audit Mode (2)