Disable removable drive autorun in Azure AD

Ted Sinclair 21 Reputation points
2022-02-07T23:57:23.677+00:00

Windows Server has a group policy to disable autorun/autoplay on removable drives. (Computer Configuration > Policies > Administrative Templates > Windows Components > AutoPlay Policies.)

Does the same thing exist in Azure AD policies? I've looked at the Device Control profile options in Endpoint Manager > Endpoint security > Attack surface reduction. I see how to disable removable drives completely, but can't find a policy setting to disable autorun.

Thanks!

Microsoft Security | Intune | Configuration
0 comments No comments
{count} votes

Accepted answer
  1. Crystal-MSFT 53,991 Reputation points Microsoft External Staff
    2022-02-08T05:44:28.357+00:00

    @Ted Sinclair , Thanks for posting in Q&A.

    After researching, I find the setting "Turn off Autoplay" and "Set the default behavior for AutoRun" are under Windows 10 Settings Catalog-> Administrative Templates > Windows Components > AutoPlay Policies. Here is the location for the reference:
    172135-image.png
    172137-image.png
    You can configure it there. Hope it can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.