Policy

Turn off the WebSocket Object

The WebSocket object allows websites to request data across domains from your browser by using the WebSocket protocol. This policy setting allows administrators to enable or disable the WebSocket object. This policy setting does not prevent client-side communication across domains via other features in Internet Explorer 10. Also, this policy setting does not prevent a site from requesting cross-domain data through a server. If you enable this policy setting, websites cannot request data across domains by using the WebSocket object. If you disable or do not configure this policy setting, websites can request data across domains by using the WebSocket object. By default, the WebSocket object is enabled.

Policy
Pack Microsoft Windows
Category Windows Components / Internet Explorer / Security Features / AJAX
Policy ID 58a5bd3e9535
Internal name IESF_DisableWebSocket

Registry

Copy registry mappings

HKLM\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBSOCKET\iexplore.exe (enabled) = 0
HKLM\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBSOCKET\iexplore.exe (disabled) = 1
HKCU\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBSOCKET\iexplore.exe (enabled) = 0
HKCU\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBSOCKET\iexplore.exe (disabled) = 1

Policy notes

The WebSocket object allows websites to request data across domains from your browser by using the WebSocket protocol. This policy setting allows administrators to enable or disable the WebSocket object. This policy setting does not prevent client-side communication across domains via other features in Internet Explorer 10. Also, this policy setting does not prevent a site from requesting cross-domain data through a server. If you enable this policy setting, websites cannot request data across domains by using the WebSocket object. If you disable or do not configure this policy setting, websites can request data across domains by using the WebSocket object. By default, the WebSocket object is enabled.

Related policies