Policy overview

Key metadata and intent for this policy.

ClassComputer
CategoryWindows Components > Windows Sandbox
Supported onAt least Windows 11 Pro, Enterprise, or Education with Windows Sandbox

Supported OS tags: Windows11

This policy setting enables or disables mapping folders into sandbox. If you enable this policy setting, mapping folders from the host into Sandbox will be permitted. If you enable this policy setting and disable write to mapped folders, mapping folders from the host into Sandbox will be permitted, but Sandbox will only have permission to read the files. If you disable this policy setting, mapping folders from the host into Sandbox will not be permitted. If you do not configure this policy setting, mapped folders will be enabled. Note that there may be security implications of exposing folders from the host into the container.

Internal name
AllowMappedFolders
Policy ID
ae97c313a75f
Elements
1

Registry values

How enabled and disabled states update the registry.

Registry locationTypeEnabled valueDisabled value
HKLM\SOFTWARE\Policies\Microsoft\Windows\Sandbox\AllowMappedFoldersREG_DWORD
1
0

Policy elements

Inputs and configuration options exposed by this policy.

ElementTypeRegistry mappingConstraints & behavior
Allow Sandbox to write to mapped folders.
ID CheckBox_AllowWriteToMappedFolders
boolean
HKLM\SOFTWARE\Policies\Microsoft\Windows\Sandbox\AllowWriteToMappedFolders
Type REG_DWORD
Options: true (1), false (0)
True: Set value = 1 · False: Set value = 0

Other policies in this category

Explore related policies at the same level.