From 2703422309d2d26b46c8727ec9d9db881debdea6 Mon Sep 17 00:00:00 2001 From: Tommy Date: Mon, 6 Nov 2023 07:07:29 -0700 Subject: [PATCH] Update Signed-off-by: Tommy --- Group Policies/Bitlocker Drive Encryption.md | 9 +++++++++ Group Policies/Microsoft Edge.md | 2 +- 2 files changed, 10 insertions(+), 1 deletion(-) create mode 100644 Group Policies/Bitlocker Drive Encryption.md diff --git a/Group Policies/Bitlocker Drive Encryption.md b/Group Policies/Bitlocker Drive Encryption.md new file mode 100644 index 0000000..fa23be0 --- /dev/null +++ b/Group Policies/Bitlocker Drive Encryption.md @@ -0,0 +1,9 @@ +# Bitlocker Drive Encryption + +`Computer Configuration\Administrative Templates\Windows Component\Bitlocker Drive Encryption` + +Choose drive encryption method and cipher strength (Windows 10 [Version 1511] and later) -> Enable -> XTS-AES 256-bit for operating system, fixed data, and removable drives. + +## Operating System Drives + +Allow enhanced PINs for startup -> Enabled diff --git a/Group Policies/Microsoft Edge.md b/Group Policies/Microsoft Edge.md index 36c12fa..5fa84c4 100644 --- a/Group Policies/Microsoft Edge.md +++ b/Group Policies/Microsoft Edge.md @@ -2,7 +2,7 @@ `Computer Configuration\Administrative Templates\Windows Components\Microsoft Edge` -**For some reason this does not seem to take effect - needs checking** +**Probably for the legacy Microsoft Edge, not the Chromium based one** Configure Autofill -> Disable (Password Manager is off so no reason for autofill to be on) Configure Do Not Track -> Enable