6Foot2 Posted March 3, 2021 Posted March 3, 2021 Has anybody seen the actual date MS stop providing security update for IE11 ? i can't seem to find that. i can find when things aren't supported...... cheers Link: Lifecycle FAQ - Internet Explorer and Microsoft Edge - Microsoft Lifecycle [Microsoft Docs] ...Internet Explorer 11 is the last major version of Internet Explorer. Internet Explorer 11 will continue receiving security updates and technical support for the lifecycle of the version of Windows on which it is installed. IE 11 is available via Microsoft Update Catalog, Windows Update and Windows Server Update Service (WSUS)... 1
gmonks Posted March 3, 2021 Posted March 3, 2021 Still need it for Barclays Online and CCTV viewing. That's its only use here though.
free780 Posted March 3, 2021 Posted March 3, 2021 (edited) Nope as Windows 10 seems to still to rely on it and Internet Options for various things. inetcpl.cpl still works after IE is removed. Microsoft will keep IE supported against security bugs as long as your running Windows 10 20H2 for example as its supported. There too much legacy for them to remove it. The Edge enterprise mode *may* function without it installed so you can allow finance sites/CCTV/Printers etc etc. But don't let people use IE for day to day browsing as most sites wont work. Edited March 3, 2021 by free780
KK20 Posted March 4, 2021 Posted March 4, 2021 It isnt used by many, some bacs software needs an IE security cert/plugin in our finance office. The digital signs are LTSC so they have it. Servers are a mix of 2016 and 2019 (so effectively LTSC). Once thing I havent checked in "new edge" is the enterprise mode. Previously you had to wait 60 seconds for the scheme to apply, was wondering if that had changed with the vs schema xml.
jthompson Posted March 4, 2021 Posted March 4, 2021 Edge enterprise mode (IE mode) would take care of everything, I should think. It's basically running IE within Edge whenever Edge visits a site that's in the XML file you configure, so I'd have thought IE plugins would be none the wiser and still work as before. It would mean that you could clear away any IE shortcuts and have your users just use Edge for whatever sites you've configured enterprise mode for. Definitely worth trying, as it would meant that IE isn't going to be used for anything beyond just the sites that you specify.
Michael Posted March 7, 2021 Posted March 7, 2021 Here's how to remove Internet Explorer on Windows Vista and upwards (client and server editions) - Elevated command prompt - Disable Feature dism /online /Disable-Feature /FeatureName:Internet-Explorer-Optional-amd64 Elevated command prompt - Re-enable Feature dism /online /Enable-Feature /FeatureName:Internet-Explorer-Optional-amd64 Still contemplating whether to do this on servers sooner rather than later, even with IE Enhanced Security? And does this also mean I could have a browser-less server without any issues?
Michael Posted March 7, 2021 Posted March 7, 2021 Are people removing IE on servers as well ? I'm just thinking of scenarios such as Domain Controllers, File Servers, Print Servers. Even with IIS installed, you could still install Chrome or Edge only where there's a need. I think I need to trial it. 1
Michael Posted March 7, 2021 Posted March 7, 2021 So I ran the command on a Server 2016 DC and you're then prompted to restart. It's all pretty quick and painless. The only other role of this server is Azure AD Connect. Internet Explorer's removed from the Taskbar, as well as Windows Accessories. It's also removed from Control Panel > Default Programs > Set Default Programs Internet Options in Control Panel is still there, but various buttons have been removed. C:\Program Files (x86)\Internet Explorer and C:\Program Files\Internet Explorer still exist, but no iexplore.exe which is perfect. Initial impressions, I'd say definitely look into it, but approach with caution! I can't guarantee something won't break! 1
Michael Posted March 27, 2021 Posted March 27, 2021 Just to update this discussion - removing Internet Explorer on a server hasn't created any issues, however I've observed the following - Powerchute Business Edition points to - https://localhost:6547/ Papercut MF points to - This is a CDN address Unifi Controller points to - https://localhost:8443/manage/ (requires Chrome or Edge anyway) if not using a Cloud Key. So in all of these cases, installing Edge or Chrome is one solution, or alternatively manage on a remote host.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now