3s-gtech Posted February 10, 2020 Posted February 10, 2020 To go from 79 to 80, am I going to have to deploy the newer version via GPO again? Or will WSUS get the update files (I think I know the answer to this one already)?
Norphy Posted February 10, 2020 Posted February 10, 2020 To go from 79 to 80, am I going to have to deploy the newer version via GPO again? Or will WSUS get the update files (I think I know the answer to this one already)? It seems to use a similar or the same update mechanism as Chrome does. Mine updated itself to v80 this morning without any input from me or anything inside WSUS. 1
3s-gtech Posted February 10, 2020 Posted February 10, 2020 (edited) Hmmm. It has updated on my PC, but how the client ones will get on is another matter - Applocker + years of locking down hackery may have broken that mechanism. I'll test. Edit: yes, it does break it. However, WSUS has detected my installs and offers build 80 to update them. Result! Edited February 10, 2020 by 3s-gtech 1
dfergusson Posted February 13, 2020 Posted February 13, 2020 Does anyone know how to disable "pin to taskbar" feature within Edge?
mavhc Posted February 13, 2020 Posted February 13, 2020 Does anyone know how to disable "pin to taskbar" feature within Edge? Why would you want to do that?
tmoon-mint Posted February 13, 2020 Posted February 13, 2020 Why would you want to do that? After installing sometimes (but not always which is odd) Edge will pin itself to the taskbar. I would also be interested in finding out if this can be turned off.
themightymrp Posted February 14, 2020 Posted February 14, 2020 With Edge coming as an MSI, is there not a way of creating an MST transform file for it which removes the pinned icon?
dfergusson Posted February 14, 2020 Posted February 14, 2020 (edited) Apologies for the confusion here, I wasn't referring to pinning Edge itself to the task bar. But more importantly about blocking access to pin any website from within Edge to the Taskbar and the Start menu. Please see attached screenshot below on how you do this within Edge. Edited February 14, 2020 by dfergusson
themightymrp Posted February 14, 2020 Posted February 14, 2020 Rather than being Edge specific, can you not set a restriction on the following folder so that nothing can be added? C:\Users\%username%\appdata\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar
mavhc Posted February 14, 2020 Posted February 14, 2020 Why do you want to remove useful functionality though?
dfergusson Posted February 14, 2020 Posted February 14, 2020 Why do you want to remove useful functionality though? Because the function pins websites to the Start Menu as well, and as we use Shared Start menus I'm sure you can image what will happen next
mavhc Posted February 14, 2020 Posted February 14, 2020 They won't pin to the start menu because users don't have permission to write there?
dfergusson Posted February 14, 2020 Posted February 14, 2020 (edited) I wouldn't of mind if it only pinned websites to the taskbar, shame that it also adds to the start menu as well. Anyways I've put a work around to stop this, so going to test this further after half term to make sure it not broken anything else. Seem when you do a "pin to taskbar" within Edge that it create a folder in our redirected Start Menu called Programs, and through this it adds pinned website in Start Menu for our students. I've changed the permission to the Shared Start Menu to be read only, so student can't write to it, which from my quick test so far now stop this website being pinned to Start Menu. Edited February 14, 2020 by dfergusson 1
dfergusson Posted February 14, 2020 Posted February 14, 2020 They won't pin to the start menu because users don't have permission to write there? Our Redirected Start Menu is kept under ProgramData that has default write access for users, I've now change this for the Start Menu to be Read only for Users.
mavhc Posted February 14, 2020 Posted February 14, 2020 Now how are the students going to edit Chrome shortcut in the start menu to run shutdown.exe??
Boredguy Posted February 14, 2020 Posted February 14, 2020 Why do you want to remove useful functionality though? It might be a useful function for home use, but not on a network where you want the start menu to be common throughout the estate. Even more so when start menus are workstation specific.
mavhc Posted February 14, 2020 Posted February 14, 2020 I'm fine with my users customising their own logins, pin the things they need where they find them most useful. Won't affect anyone else's profile.
6Foot2 Posted February 23, 2020 Posted February 23, 2020 Link: Beta channel update to 81.0.416.12 is live These release notes provide information about new features and non-security updates that are included in the Microsoft Edge Beta Channel. Edge Beta Version 81.0.416.12: February 20 Feature updates Collections is now available. You can get started by clicking the Collections icon next to the address bar. This opens the Collections pane where you can create, edit, and view Collections. We designed Collections based on what you do on the web. If you’re a shopper, a traveller, a teacher or a student, Collections can help. Learn more. Allow the removal (Hide from toolbar) of the Collections button from the Microsoft Edge toolbar for consistency. On-prem Active Directory account auto sign in will only be targeted to organizations that turn it on. If users were already signed in with an on-prem AD account, they will now be able to sign out of it. Now, users will only be automatically signed in with the primary account on their operating system if it is an MSA or an Azure AD account. Admins can enable auto sign in with an on-prem AD account using the ConfigureOnPremisesAccountAutoSignIn policy. Application Guard. Extensions support now available in the container. Added a message to inform users that Internet Explorer is not installed when a user navigates to a page that is configured to open in Internet Explorer mode. Updated the 3D View tool in Microsoft Edge DevTools with a new feature to help debug z-index stacking context. 3D View shows a representation of the DOM (Document Object Model) depth using color and stacking, and the z-Index view helps you isolate the different stacking contexts of your page. Learn more. Localized the F12 Dev tools in 10 new languages, so they will match the language used in the rest of the browser. Learn more. Added support for Dolby Vision playback. On Dolby Vision-enabled Windows 10 Build 17134 (April 2018 Update), websites can show Dolby vision content. See how to enable Dolby Vision content from Netflix. Microsoft Edge can now identify and remove duplicate favorites and merge folders with the same name. To access the tool, click the star on the browser’s toolbar and select "Remove duplicate favorites". You will be able to confirm changes and any updates to your favorites will be synced across devices. We heard from users it can be difficult to distinguish a normal browsing window in dark theme from an InPrivate window since both window frames are dark. The new solid InPrivate blue pill in the top right corner helps reassure users they are browsing InPrivate. Open external links in the correct browser profile. Select a default profile for links opened for external apps to open in from edge://settings/multiProfileSettings. Added a warning to alert users who sign into a browser profile with an account after being previously signed in with another account. This will help prevent unintentional data merging. If you have payment cards saved in your Microsoft account, you can use them in Microsoft Edge while filling out payment forms. The cards in your Microsoft account will sync across desktop devices and the full details will be shared with the website after two-factor authentication (CVC code and your Microsoft identity.) For further convenience, you can choose to securely save a copy of the card on the device during authentication. Line Focus is designed for users who like to focus on a limited part of the content as they read. It lets users keep the focus on 1, 3 or 5 lines at a time and dims out the rest of the page to let users read without distraction. Users can scroll using touch or arrow keys and the focus shifts accordingly. Microsoft Edge is now integrated with Windows Speller on Windows platforms 8.1 and above. This integration provides greater language support, with access to more language dictionaries and the ability to use Windows custom dictionaries. There is no further action needed from the users when a language has been added in the OS language settings and a language spellcheck toggle is enabled in Microsoft Edge settings. When PDF documents are opened using Microsoft Edge, users will now be able to create highlights, change color, and delete highlights. This helps in referencing important parts of the document later, and for collaboration. When loading long PDF documents that have been optimized for web, the pages being viewed by the user will be loaded faster, parallelly, while the rest of the document is loading. Now it's easier to start the Immersive Reader for a website by just pressing the F9 key. Now it's easier to start Read Aloud by using a keyboard shortcut (Ctrl + Shift + U). Policy updates New policies 12 new policies were added. Download the updated Administrative Templates from the Microsoft Edge Enterprise landing page. The following new policies were added. AmbientAuthenticationInPrivateModesEnabled - Enable Ambient Authentication for InPrivate and Guest profiles. AudioSandboxEnabled - Allow the audio sandbox to run. ForceLegacyDefaultReferrerPolicy - Use a default referrer policy of no-referrer-when-downgrade. GloballyScopeHTTPAuthCacheEnabled - Enable globally scoped HTTP auth cache. ImportExtensions - Allow importing of extensions. ImportCookies - Allow importing of Cookies. ImportShortcuts - Allow importing of shortcuts. InternetExplorerIntegrationSiteRedirect - Specify how "in-page" navigations to unconfigured sites behave when started from Internet Explorer mode pages. OmniboxMSBProviderEnabled - Enable Microsoft Search for Business provider in omnibox. StricterMixedContentTreatmentEnabled - Enable stricter treatment for mixed content. TLS13HardeningForLocalAnchorsEnabled - Enable a TLS 1.3 security feature for local trust anchors. ConfigureOnPremisesAccountAutoSignIn - Configure automatic sign in with an Active Directory domain account when there is no Azure AD domain account. Deprecated policies The following policies continue to work in this release. They will become "obsolete" in a future release. WebComponentsV0Enabled - Re-enable Web Components v0 API until M84. WebDriverOverridesIncompatiblePolicies - Allow WebDriver to Override Incompatible. 1
jthompson Posted February 26, 2020 Posted February 26, 2020 From The Verge: Microsoft is adding a secret SkiFree-like surfing game into its Edge browser. Cruft much? https://www.theverge.com/2020/2/26/21154821/microsoft-edge-surf-game-easter-egg-secret-skifree-modes Apparently the baked in game will be available at edge://surf/
themightymrp Posted February 28, 2020 Posted February 28, 2020 Should be able to, I already have a GPO setting for students under: Users -- Policies -- Admin templates -- Microsoft Edge -- Block access to a list of URL's Which contains edge://extensions edge://settings etc. Should be able to just add edge://surf
ModeratelyGruntled Posted March 3, 2020 Posted March 3, 2020 Hi I've managed to get it down to just the following animation: ...which is literally two clicks, so not a huge inconvenience, but one I'd rather do away with. Has anyone worked out how to do away with the first run animation altogether? Also - I've had a read through this thread, is there anything else GPO-wise that needs locking down? Currently just setting home/startup/new tab pages and setting the search engine to google. Thanks!
Boredguy Posted March 3, 2020 Posted March 3, 2020 There was the GPO setting with the release of 80 that disabled the "getting started" screen. Our staff now just get they "you have signed in, do you want to enable sync" the first time they launch Edge (students have sync disabled) and as it automatically picks up the user details from azure they don't have to sign in. Using a UEV template, the nag screen status is held with their network account so when they use another PC it knows they have done the first run already. Each time the browser updates, it's worth checking the GPO download again as they add new features. 1
ModeratelyGruntled Posted March 3, 2020 Posted March 3, 2020 Thanks but in typical fashion I found it five minutes after posting this! For anyone else - under Administrative Templates > Microsoft Edge > Hide the first run experience and splash screen That's interesting @Boredguy - I was planning just to disable sync for now globally but will research sync'd settings.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now