en-US

Allow HTTPS-Only Mode to be enabled

Supported on: Microsoft Edge version 140, Windows 7 or later

Registry

HKLM Software\Policies\Microsoft\Edge\Recommended
HKCU Software\Policies\Microsoft\Edge\Recommended

Options

HttpsOnlyMode enum
  • Don't restrict users' HTTPS-Only Mode setting -> allowed
  • Disable HTTPS-Only Mode -> disallowed
  • Force enable HTTPS-Only Mode in Strict mode -> force_enabled
  • Force enable HTTPS-Only Mode in Balanced Mode -> force_balanced_enabled

Description

This policy controls whether users can enable HTTPS-Only Mode (Always Use Secure Connections) in Settings. HTTPS-Only Mode attempts to upgrade all navigation to HTTPS. If this setting isn't set or is set to Allowed, users are able to enable HTTPS-Only Mode. If this setting is set to Disallowed, HTTPS-Only Mode will be disabled. If this setting is set to Force Enabled, HTTPS-Only Mode is enabled in Strict mode. If this setting is set to Force Balance Enabled, HTTPS-Only Mode is enabled in Balanced mode. The settings Force Enabled and Force Enabled can be recommended to users. HTTPS-Only Mode will be set to Strict or Balanced initially, but users are allowed to change it. If you set this policy to a value that isn't supported by the version of Microsoft Edge that receives the policy, Microsoft Edge defaults to the Allowed setting. The separate HttpAllowlist policy can be used to exempt specific hostnames or hostname patterns from being upgraded to HTTPS by this feature. Policy options mapping: * allowed (allowed) = Don't restrict users' HTTPS-Only Mode setting * disallowed (disallowed) = Disable HTTPS-Only Mode * force_enabled (force_enabled) = Force enable HTTPS-Only Mode in Strict mode * force_balanced_enabled (force_balanced_enabled) = Force enable HTTPS-Only Mode in Balanced Mode Use the preceding information when configuring this policy. Example value: disallowed