en-US edge computer user

Configure whether Microsoft Edge should automatically select a certificate when there are multiple certificate matches for a site configured with "AutoSelectCertificateForUrls" (deprecated)

Verified with Microsoft Edge 152.0.4191.53 — updated on July 10, 2026

Microsoft Edge 152.0.4191.53

Supported on: Microsoft Edge version 81, Windows 7 or later

Path in the GPO console

Computer Configuration\Administrative Templates\Microsoft Edge

Description

DEPRECATED: This policy is deprecated. It is currently supported but will become obsolete in a future release. This policy is deprecated because we are moving to a new policy. It won't work in Microsoft Edge version 104. The new policy to use is 'PromptOnMultipleMatchingCertificates' (Prompt the user to select a certificate when multiple certificates match). Toggles whether users are prompted to select a certificate if there are multiple certificates available and a site is configured with 'AutoSelectCertificateForUrls' (Automatically select client certificates for these sites). If you don't configure 'AutoSelectCertificateForUrls' for a site, the user is always prompted to select a certificate. If you enable this policy, Microsoft Edge prompts a user to select a certificate for sites on the list defined in 'AutoSelectCertificateForUrls' if and only if there's more than one certificate. If you disable or don't configure this policy, Microsoft Edge automatically selects a certificate even if there are multiple matches for a certificate. The user won't be prompted to select a certificate for sites on the list defined in 'AutoSelectCertificateForUrls'.

Registry

HKLM Software\Policies\Microsoft\Edge
HKCU Software\Policies\Microsoft\Edge

Value name: ForceCertificatePromptsOnMultipleMatches

Enabled: ForceCertificatePromptsOnMultipleMatches = 1

Disabled: ForceCertificatePromptsOnMultipleMatches = 0

Export Builder

BETA

Configure the state, scope and options, then generate .reg, PowerShell, Intune and SCCM outputs — or add the setting to a multi-setting collection.

These exports write the registry — this is not a managed GPO.

Scope

.reg file

Windows Registry Editor Version 5.00

; Exported from gporais.com
; Policy: Configure whether Microsoft Edge should automatically select a certificate when there are multiple certificate matches for a site configured with "AutoSelectCertificateForUrls" (deprecated)
; State: Enabled
; Scope: Computer (HKLM)
; Supported on: Microsoft Edge version 81, Windows 7 or later

[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Edge]
"ForceCertificatePromptsOnMultipleMatches"=dword:00000001
More formats (PowerShell, Intune, SCCM)

PowerShell

# Exported from gporais.com
# Policy: Configure whether Microsoft Edge should automatically select a certificate when there are multiple certificate matches for a site configured with "AutoSelectCertificateForUrls" (deprecated)
# State: Enabled
# Scope: Computer (HKLM)
# Supported on: Microsoft Edge version 81, Windows 7 or later

$path = 'HKLM:\Software\Policies\Microsoft\Edge'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'ForceCertificatePromptsOnMultipleMatches' -Value 1 -Type DWord

Building a multi-setting collection? Add this setting and generate combined .reg / PowerShell / GPO scripts.

Open the Builder

Embed this policy on your site

What to embed
Theme

Adds one script line: the theme follows your site’s appearance and the height fits the content. If your site blocks scripts, the embed follows the visitor’s system theme.

Preview