Enable dev drive
Verified with Windows 11 25H2 — updated on July 30, 2026
Supported on: At least Windows 11 Version 22H2
Path in the GPO console
Computer Configuration\Administrative Templates\System\File System Description
Dev drive or developer volume is a volume optimized for performance of developer scenarios. A developer volume allows an administrator to choose file system filters that are attached on the volume. Disabling this setting will disallow creation of new developer volumes, existing developer volumes will mount as regular volumes. If this setting is not configured the default policy is to enable developer volumes while allowing antivirus filter to attach on a deveveloper volume. Further, if not configured, a local administrator can choose to not have antivirus filter attached to a developer volume. A reboot is required for this setting to take effect.
Registry
System\CurrentControlSet\Policies Value name: FsEnableDevDrive
Enabled: FsEnableDevDrive = 1
Disabled: FsEnableDevDrive = 0
MDM / Intune (CSP)
./Device/Vendor/MSFT/Policy/Config/FileSystem/EnableDevDrive Microsoft Learn documentation Mapping data: Microsoft Learn (CC BY 4.0)
Export Builder
BETAConfigure the state, scope and options, then generate .reg, PowerShell, Intune and SCCM outputs — or add the setting to a multi-setting collection.
These exports write the registry — this is not a managed GPO. ⓘ
.reg file
Windows Registry Editor Version 5.00
; Exported from gporais.com
; Policy: Enable dev drive
; State: Enabled
; Supported on: At least Windows 11 Version 22H2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Policies]
"FsEnableDevDrive"=dword:00000001
"FltmgrDevDriveAllowAntivirusFilter"=dword:00000001 More formats (PowerShell, Intune, SCCM)
PowerShell
# Exported from gporais.com
# Policy: Enable dev drive
# State: Enabled
# Supported on: At least Windows 11 Version 22H2
$path = 'HKLM:\System\CurrentControlSet\Policies'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'FsEnableDevDrive' -Value 1 -Type DWord
Set-ItemProperty -Path $path -Name 'FltmgrDevDriveAllowAntivirusFilter' -Value 1 -Type DWord Intune XML
OMA-URI: ./Device/Vendor/MSFT/Policy/Config/FileSystem/EnableDevDrive
Data type: String
Value:
<enabled/>
<data id="DevDriveAllowAntivirusFilter" value="1"/> Intune Remediation
# === Detection script ===
# Exported from gporais.com
# Policy: Enable dev drive
# State: Enabled
# Supported on: At least Windows 11 Version 22H2
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKLM:\System\CurrentControlSet\Policies' -Name 'FsEnableDevDrive' -Expected 1 -Kind DWord)
(Test-RegistryValue -Path 'HKLM:\System\CurrentControlSet\Policies' -Name 'FltmgrDevDriveAllowAntivirusFilter' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Enable dev drive
# State: Enabled
# Supported on: At least Windows 11 Version 22H2
$path = 'HKLM:\System\CurrentControlSet\Policies'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'FsEnableDevDrive' -Value 1 -Type DWord
Set-ItemProperty -Path $path -Name 'FltmgrDevDriveAllowAntivirusFilter' -Value 1 -Type DWord SCCM scripts
# Exported from gporais.com
# Policy: Enable dev drive
# State: Enabled
# Supported on: At least Windows 11 Version 22H2
# SCCM Configuration Item guidance:
# Create a Configuration Item of type "Setting: Script".
# Discovery script: use the Detection script below.
# Remediation script: use the Remediation script below.
# Compliance rule: the Discovery script output equals 'Compliant'.
# === Detection script ===
# Exported from gporais.com
# Policy: Enable dev drive
# State: Enabled
# Supported on: At least Windows 11 Version 22H2
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKLM:\System\CurrentControlSet\Policies' -Name 'FsEnableDevDrive' -Expected 1 -Kind DWord)
(Test-RegistryValue -Path 'HKLM:\System\CurrentControlSet\Policies' -Name 'FltmgrDevDriveAllowAntivirusFilter' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Enable dev drive
# State: Enabled
# Supported on: At least Windows 11 Version 22H2
$path = 'HKLM:\System\CurrentControlSet\Policies'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'FsEnableDevDrive' -Value 1 -Type DWord
Set-ItemProperty -Path $path -Name 'FltmgrDevDriveAllowAntivirusFilter' -Value 1 -Type DWord Building a multi-setting collection? Add this setting and generate combined .reg / PowerShell / GPO scripts.