"SmartScreen for Microsoft Edge is off" but it's not

Aaron Seet 726 Reputation points
2020-05-20T10:35:36.287+00:00

Original thread
https://social.technet.microsoft.com/Forums/windows/en-US/8d9b70d7-dbe4-4531-a486-b18c609eae90/quotsmartscreen-for-microsoft-edge-is-offquot?forum=win10itprosecurity

Our Windows computers are AAD joined and MDM enrolled with Intune. We have some computers, that strangely, throw a warning that "SmartScreen for Microsoft Edge is off" every time a manual Windows Defender Antivirus scan is manually triggered.

Thing is, we have already have configuration profiles and administrative templates for SmartScreen enabled at both the Edge browser and OS levels, and they work as expected. Comparing through the documentation vs the actual reality of the computers, there appears to be discrepancies in the expectation of Registry key paths. Which may suggest false alarms.

This should be more a client OS problem but seem to have run out of ideas there. Anybody else controlling their AAD computers with Intune facing similar problems?

Windows 10 Setup
Windows 10 Setup
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Setup: The procedures involved in preparing a software program or application to operate within a computer or mobile device.
1,909 questions
Not Monitored
Not Monitored
Tag not monitored by Microsoft.
36,235 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,640 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Teemo Tang 821 Reputation points
    2020-05-21T03:14:21.123+00:00

    On MDM side, default Microsoft Edge baseline settings for Intune are enough, I see you current configurations are ok, since you have refer to the following doc.

    Configure Microsoft Defender SmartScreen

    Default: Enabled

    https://learn.microsoft.com/en-us/mem/intune/protect/security-baseline-settings-edge?pivots=edge-october-2019

    What I want remind is that: User can configure Microsoft Defender SmartScreen setting in Microsoft Edge Setting inside, look at the picture:

    8553-edge.png

    When I turn off Microsoft Defender SmartScreen here, the switch on Windows Security SmartScreen for Microsoft Edge will be turned off at the same time, so even though we have configured Microsoft Edge web browser baseline settings on Intune, on GPO, on registry, users may still modify it on browser itself. Next you see current situation…

    8418-off.png

    In my opinion, your configurations have been applied, all settings are correct, more good practices can be found here:

    https://learn.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-smartscreen/microsoft-defender-smartscreen-available-settings#recommended-group-policy-and-mdm-settings-for-your-organization

    0 comments No comments