Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
Verified with Windows 11 25H2 — updated on July 30, 2026
Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
Path in the GPO console
Computer Configuration\Administrative Templates\Windows Components\Internet Explorer User Configuration\Administrative Templates\Windows Components\Internet Explorer Description
This setting lets you decide whether to open all sites not included in the Enterprise Mode Site List in Microsoft Edge. If you use this setting, you must also turn on the Administrative Templates\Windows Components\Internet Explorer\Use the Enterprise Mode IE website list policy setting and you must include at least one site in the Enterprise Mode Site List. Enabling this setting automatically opens all sites not included in the Enterprise Mode Site List in Microsoft Edge. Disabling, or not configuring this setting, opens all sites based on the currently active browser. Note: If you've also enabled the Administrative Templates\Windows Components\Microsoft Edge\Send all intranet sites to Internet Explorer 11 policy setting, then all intranet sites will continue to open in Internet Explorer 11.
Registry
Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode Value name: RestrictIE
Enabled: RestrictIE = 1
Disabled: RestrictIE = 0
MDM / Intune (CSP)
./Device/Vendor/MSFT/Policy/Config/InternetExplorer/SendSitesNotInEnterpriseSiteListToEdge ./User/Vendor/MSFT/Policy/Config/InternetExplorer/SendSitesNotInEnterpriseSiteListToEdge Microsoft Learn documentation Mapping data: Microsoft Learn (CC BY 4.0)
Export Builder
BETAConfigure the state, scope and options, then generate .reg, PowerShell, Intune and SCCM outputs — or add the setting to a multi-setting collection.
These exports write the registry — this is not a managed GPO. ⓘ
Applying both scopes creates an ambiguous configuration (computer takes precedence over user). Only do this intentionally.
.reg file
Windows Registry Editor Version 5.00
; Exported from gporais.com
; Policy: Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
; State: Enabled
; Scope: Computer (HKLM)
; Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode]
"RestrictIE"=dword:00000001 More formats (PowerShell, Intune, SCCM)
PowerShell
# Exported from gporais.com
# Policy: Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'RestrictIE' -Value 1 -Type DWord Intune XML
OMA-URI: ./Device/Vendor/MSFT/Policy/Config/InternetExplorer/SendSitesNotInEnterpriseSiteListToEdge
Data type: String
Value:
<enabled/> Intune Remediation
# === Detection script ===
# Exported from gporais.com
# Policy: Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode' -Name 'RestrictIE' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'RestrictIE' -Value 1 -Type DWord SCCM scripts
# Exported from gporais.com
# Policy: Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
# SCCM Configuration Item guidance:
# Create a Configuration Item of type "Setting: Script".
# Discovery script: use the Detection script below.
# Remediation script: use the Remediation script below.
# Compliance rule: the Discovery script output equals 'Compliant'.
# === Detection script ===
# Exported from gporais.com
# Policy: Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode' -Name 'RestrictIE' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Send all sites not included in the Enterprise Mode Site List to Microsoft Edge
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: At least Internet Explorer 11.0 on Windows 10, vertion 1607 or later
$path = 'HKLM:\Software\Policies\Microsoft\Internet Explorer\Main\EnterpriseMode'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'RestrictIE' -Value 1 -Type DWord Building a multi-setting collection? Add this setting and generate combined .reg / PowerShell / GPO scripts.