diff --git a/Group Policies/Bitlocker Drive Encryption.md b/Group Policies/Bitlocker Drive Encryption.md new file mode 100644 index 0000000..fa23be0 --- /dev/null +++ b/Group Policies/Bitlocker Drive Encryption.md @@ -0,0 +1,9 @@ +# Bitlocker Drive Encryption + +`Computer Configuration\Administrative Templates\Windows Component\Bitlocker Drive Encryption` + +Choose drive encryption method and cipher strength (Windows 10 [Version 1511] and later) -> Enable -> XTS-AES 256-bit for operating system, fixed data, and removable drives. + +## Operating System Drives + +Allow enhanced PINs for startup -> Enabled diff --git a/Group Policies/Microsoft Edge.md b/Group Policies/Microsoft Edge.md index 36c12fa..5fa84c4 100644 --- a/Group Policies/Microsoft Edge.md +++ b/Group Policies/Microsoft Edge.md @@ -2,7 +2,7 @@ `Computer Configuration\Administrative Templates\Windows Components\Microsoft Edge` -**For some reason this does not seem to take effect - needs checking** +**Probably for the legacy Microsoft Edge, not the Chromium based one** Configure Autofill -> Disable (Password Manager is off so no reason for autofill to be on) Configure Do Not Track -> Enable