Policy

This settings controls whether Network Protection is allowed to be configured into block or audit mode on Windows Server.

Disabled (Default): If Not Configured or Disabled, network protection is not allowed to be configured into block or audit mode on Windows Server. Enabled: If Enabled, administrators can control whether Network Protection is allowed to be configured into block or audit mode on Windows Server. Note, that this configuration is dependent on the EnableNetworkProtection configuration. If this configuration is false, EnableNetworkProtection will be ignored, otherwise network protection will start on Windows Server depending on the value of EnableNetworkProtection.

Policy
Pack Microsoft Windows
Category Windows Components / Microsoft Defender Antivirus / Microsoft Defender Exploit Guard / Network Protection
Policy ID f411519a9a88
Internal name AllowNetworkProtectionOnWinServer

Registry

Copy registry mappings

HKLM\Software\Policies\Microsoft\Windows Defender\Windows Defender Exploit Guard\Network Protection\AllowNetworkProtectionOnWinServer (enabled) = 1
HKLM\Software\Policies\Microsoft\Windows Defender\Windows Defender Exploit Guard\Network Protection\AllowNetworkProtectionOnWinServer (disabled) = 0

Policy notes

Disabled (Default): If Not Configured or Disabled, network protection is not allowed to be configured into block or audit mode on Windows Server. Enabled: If Enabled, administrators can control whether Network Protection is allowed to be configured into block or audit mode on Windows Server. Note, that this configuration is dependent on the EnableNetworkProtection configuration. If this configuration is false, EnableNetworkProtection will be ignored, otherwise network protection will start on Windows Server depending on the value of EnableNetworkProtection.

Related policies