Skip to content

TechDirectArchive

Hands-on IT, Cloud, Security & DevOps Insights

  • Home
  • About
  • Advertise With US
  • Reviews
  • Contact
  • Toggle search form
Home » Windows » How to Block downloads on Microsoft Edge using GPO on Windows Server 2019 and 2022
  • hero activedirectory
    How to move a computer object from one container (OU) to another Windows Server
  • fghj
    How to enable or disable DotNet Framework (NetFx3) via PowerShell, Control Panel, and DISM in Windows Windows
  • iso10
    Mount an ISO image in Windows 10 and 11 Windows
  • License
    Windows Licensing: How to find your Windows 10 Product key Windows
  • How to Disable Automatic Opening of Previous files in Notepad on Windows 11
    How to Disable Automatic Opening of Previous Files in Notepad on Windows 11 Windows
  • 10.0.17763.1 error
    Fix Windows 10 Setup 1809 build 10.0.17763.1 is not supported Error Windows Server
  • Slide1 3
    Azure Virtual Networks: Preparing Azure and On-Premises Virtual Networks with Azure CLI Commands AWS/Azure/OpenShift
  • WinRM set up for specific IP
    Configure WinRM to accept connection from a specific IP Address Windows

How to Block downloads on Microsoft Edge using GPO on Windows Server 2019 and 2022

Posted on 09/04/202208/12/2023 Imoh Etuk By Imoh Etuk No Comments on How to Block downloads on Microsoft Edge using GPO on Windows Server 2019 and 2022
How to Block downloads on Microsoft Edge using GPO on Windows Server 2019 and 2022

Group Policy is a Windows feature that enables a wide range of advanced settings that network or system administrators can use to control the working environment of Active Directory users and computer accounts including blocking downloads on Microsoft Edge. It essentially provides a centralized location for administrators to manage and configure the settings of operating systems, applications, and users. Please see how to create, configure and apply Group Policy Objects on Windows Servers: Set Desktop Wallpaper, Prevent access to Registry Editing tools,

Microsoft Edge on the other hand is a web browser developed by Microsoft that was designed to replace the older Internet Explorer with faster speeds and more features.

When used correctly, Group Policies can help you increase the security of your users' computers and defend against both insider threats and external attacks.

In this post, look at how system administrators can use GPO to block downloads from the Microsoft Edge browser on Windows Server 2019 and 2022.

You can check all available Policies for the latest version of Microsoft Edge, how to enable Screen Saver Timeout, and how to Password Protect the Screensaver as well as configure favorites on Microsoft Edge via Group Policy

What is Group Policy Object?

A Group Policy Object (GPO) is a collection of settings created with the Group Policy Editor in the Microsoft Management Console (MMC). GPOs can be linked to single or multiple Active Directory containers, such as sites, domains, or organizational units (OUs).

Users can use the MMC to create GPOs that define registry-based policies, security options, software installation, and other features.

Note: GPOs are applied in the same logical order by Active Directory: local policies, site policies, domain policies, and OU policies.

Blocking Downloads on Microsoft Edge via GPO

At times, you might not want to want to allow users to download files from the internet for security reasons. If you are using the Microsoft Edge browser, it is possible to achieve that using the group policy object.

1. Download the Microsoft Edge Policy Template File

To get started with it, on the domain controller or the Server, download the latest version of the Microsoft Edge policy template file by selecting the stable version, build, and the platform.

Download Edge Template file
Download the Microsoft Edge Policy Template file

Having downloaded the policy template file, double-click the Windows Cabinet file named Microsoft Edge Policy Templates. and extract the zip file. In the screenshot below, all files are placed on the Downloads root directory.

Extract Policy Template file
Extract the Policy Template file

2. Copy the ADMX files to policy definitions directory

Navigate to the directory named Windows using the built-in Windows Command Prompt and copy the ADMX files to the Policy definitions directory.

Copy the Admx file
ADMX files Copied to the Policy Definitions Directory

3. Copy the ADML files to language directory

Next is to access the correct language subdirectory and copy the ADML files to the correct language directory inside the Policy definitions.

Copy the Adml files
ADML Files Copied to the Policy Definitions Directory

4. Open Group Policy Management Tool

Now you are one step closer to blocking downloads on Microsoft edge. On the domain controller or the Server where you want to affect the policy, Search for and open the group policy management tool.

Search for group policy management
Search for GPO

5. Create a new Group Policy Object

Next, create a new Group Policy Object by navigating through Forest > Domain >Group Policy Object. Right-click on Group Policy Object and select “New” as shown in the screenshot below:

Create a Group Policy Object
Create a New GPO

Enter a name for the new group policy.

Name your GPO
Name the new GPO

6. Edit your new Group Policy Object

The screenshot above shows that we named the new GPO My-Demo-GPO. On the Group Policy Management screen, expand the folder named Group Policy Objects. Right-click your new Group Policy Object and select the Edit option.

Edit the New GPO
Edit the New GPO

7. Locate the Microsoft Edge Folder within User Configurations

Expand the User configuration folder on the group policy editor screen and look for the following item.

User Configuration > Policies > Administrative Templates > Microsoft Edge

The below screenshot shows the Microsoft Edge configuration options.

Expand the MS Edge file
Microsoft Edge Configuration options

8. Enable “Allow Download Restrictions”

Next, still under the Microsoft Edge configuration options locate from the right hand side of the screen and double-click on Allow download restrictions and “Enabled” and then Apply and click on Ok to effect the policy.

Allow Downloads Restrictions to enable the option of blocking all downloads

9. Block all downloads on Microsoft Edge

Note you must select the option “block all downloads” as shown below for the policy to work.

Enable Allow download Restrictions and select block all downloads then click on OK and apply
Enable the “Allow download restrictions

Effecting the above policy will disable the user’s permission to download files using Microsoft Edge. To save the group policy configuration, you need to close the Group Policy editor. Now that you have finished the GPO creation, you need to link the policy.

Linking GPO

To link the GPO, do the following: On the Group policy management screen, right-click the domain name and select the option to link an existent GPO.

Link GPO
Link GPO

Here, we are linking the group policy to the name of the GPO we created above My-Demo-GPO to the root of the domain.

Select the GPO to Link
Select GPO to Link

Congratulations, you have successfully created a GPO and used it to block all downloads from Microsoft Edge. Wish to have the updates applied automatically, please refer to the following guide: GPUpdate Switches: GPUpdate vs GPUpdate force.

Rate this post

Thank you for reading this post. Kindly share it with others.

  • Click to share on X (Opens in new window) X
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to share on Telegram (Opens in new window) Telegram
  • Click to share on WhatsApp (Opens in new window) WhatsApp
  • Click to share on Pocket (Opens in new window) Pocket
  • Click to share on Mastodon (Opens in new window) Mastodon
  • Click to share on Bluesky (Opens in new window) Bluesky
  • Click to share on Threads (Opens in new window) Threads
  • Click to share on Nextdoor (Opens in new window) Nextdoor
Windows, Windows Server Tags:GPO, Group Policy Object, Windows 10, Windows 11, Windows Server 2016

Post navigation

Previous Post: Getscreen.me: Flexible Remote Access Software For Customer Support
Next Post: Upgrade Windows 11 Pro to Enterprise and vice Versa

Related Posts

  • Banner
    How to determine Tombstone Lifetime in Active Directory Windows Server
  • Mimikatz hacktool Trillix
    Windows Defender detects Endpoint Security HipHandlers.dll Security | Vulnerability Scans and Assessment
  • Download and apply Windows ADK Patch
    How to download and install the Windows ADK Patches Windows
  • screenshot 2020 04 09 at 02.57.27
    Import certificates into Trusted Root and Personal certificate store Windows Server
  • How to Install Winget on Windows Server
    How to Install Winget on Windows Server Windows Server
  • banner
    How To Add Google Drive To File Explorer in Windows Windows

More Related Articles

Banner How to determine Tombstone Lifetime in Active Directory Windows Server
Mimikatz hacktool Trillix Windows Defender detects Endpoint Security HipHandlers.dll Security | Vulnerability Scans and Assessment
Download and apply Windows ADK Patch How to download and install the Windows ADK Patches Windows
screenshot 2020 04 09 at 02.57.27 Import certificates into Trusted Root and Personal certificate store Windows Server
How to Install Winget on Windows Server How to Install Winget on Windows Server Windows Server
banner How To Add Google Drive To File Explorer in Windows Windows

Leave a Reply Cancel reply

You must be logged in to post a comment.

Microsoft MVP

VEEAMLEGEND

vexpert-badge-stars-5

Virtual Background

GoogleNews

Categories

veeaam100

sysadmin top30a

  • hero activedirectory
    How to move a computer object from one container (OU) to another Windows Server
  • fghj
    How to enable or disable DotNet Framework (NetFx3) via PowerShell, Control Panel, and DISM in Windows Windows
  • iso10
    Mount an ISO image in Windows 10 and 11 Windows
  • License
    Windows Licensing: How to find your Windows 10 Product key Windows
  • How to Disable Automatic Opening of Previous files in Notepad on Windows 11
    How to Disable Automatic Opening of Previous Files in Notepad on Windows 11 Windows
  • 10.0.17763.1 error
    Fix Windows 10 Setup 1809 build 10.0.17763.1 is not supported Error Windows Server
  • Slide1 3
    Azure Virtual Networks: Preparing Azure and On-Premises Virtual Networks with Azure CLI Commands AWS/Azure/OpenShift
  • WinRM set up for specific IP
    Configure WinRM to accept connection from a specific IP Address Windows

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1,836 other subscribers
  • RSS - Posts
  • RSS - Comments
  • About
  • Authors
  • Write for us
  • Advertise with us
  • General Terms and Conditions
  • Privacy policy
  • Feedly
  • Telegram
  • Youtube
  • Facebook
  • Instagram
  • LinkedIn
  • Tumblr
  • Pinterest
  • Twitter
  • mastodon

Tags

Active Directory AWS Azure Bitlocker Microsoft Windows PowerShell WDS Windows 10 Windows 11 Windows Server 2016

Copyright © 2025 TechDirectArchive

 

Loading Comments...
 

You must be logged in to post a comment.