Forum Discussion
Chris2120
Aug 09, 2021Copper Contributor
Apps for Enterprise Group Policy Best Practice
Hi there,
This might be a very generic question, but we are preparing to deploy Apps for Enterprise across our estate, and were looking at the new group policy admx templates and debating what policies and options to configure.
We were wondering if there was any sort of "best practice" or top recommendations for this sort of thing. Talking things like OST retention defaults, blocking PSTs, default file save locations (i.e. governance around OneDrive) that sort of thing.
We have got the security baseline templates already downloaded etc, but this is more around user config options.
Thanks
Chris
- Chris2120Copper ContributorGreat thank you very much
- You can also look at the Security Policy Advisor, which is now built in in the M365 Apps admin center: https://docs.microsoft.com/en-us/DeployOffice/overview-of-security-policy-advisor
- At my previous employer we used the Security Baseline as the default settings if not explicitly other requested setting from the business. In other words, I don't believe there's a "best practice" as all orgs. have different business needs.
https://techcommunity.microsoft.com/t5/microsoft-security-baselines/bg-p/Microsoft-Security-Baselines