Enlightened app (Windows Information Protection)

Copper Contributor

Within Windows Information Protection (WIP) there is support for enlightened apps. These are apps that basically know the difference between personal and corporate data. Is the new Microsoft Edge already an enlightened app?

14 Replies
At present, no, Edge Dev/Canary is not an enlightened app. WIP remains an area of active investigation.

@Eric_Lawrence 

 

Any updates on this topic? This feature would be very important for our costumers. 

 

Many Thanks,

Markus

Hoping this in on a roadmap. As my organization is very interested in this. Windows Information Protection support equivalent to IE is a huge MUST. This in addition to IE mode and policies, will allow enterprises to consolidate on a single browser, which would be a huge leap forward.
WIP support is important for the new Microsoft Edge and is on the roadmap. Recent builds of Edge in all channels are enlightened and the feature is available behind a feature flag (#edge-dataprotection) while we continue to develop it. We are very interested in learning from people who have deployed WIP in their organization. Please contact me via private message if you are willing to talk to us over the phone about your deployment configuration and any pain points which you might have with WIP support in the browser.

@Arunesh_Chandra I see this WIP option, on default state in v80 ..., can you confirm this works and Edge Insider is now enligtened app on Windows 10 ?

@hkusulja Edge is now marked as an enlighted app, but the policies are not correctly applied. For instance Copy/Paste is disabled via a WIP policy, but it's still possibly to copy corporate content to a private document. In all other WIP enabled apps this function is blocked.

Chromium Edge’s support for WIP is under development and hence available behind a feature flag.

As of now the following WIP integration functionalities are available to pilot:
• File protection on the device when downloaded from a work location
• Audit / Block / Override enforcement for File Uploads
• Briefcase visual indicator available on the address bar when browsing work locations
• Browsing to work locations from other profiles automatically redirects to the Work Profile (associated with the Azure AD Identity)
• IE Mode supports full WIP integration

Coming soon:
• Audit / Block / Override enforcement for Clipboard actions
• Audit / Block / Override enforcement for Drag & Drop actions

@Naren- Please confirm that flag #edge-dataprotection , on defaults means off, and if we need this feature we manually need to turn it on?
Also can you reference list of flags and its default state meaning (how to check is it off or on?) Tx

Yes...By default it is Off for now. And you'll have to turn it on manually. That's the only flag required for WIP integration.

@Naren- Ok, I can confirm that in Beta channel, v79, after enabling flag, WIP works :) thank you

@Naren-  Thanks for the information! WIP support is a big requirement for us so it's really good to know development is continuing in this area.

Hey Naren - Any updates to dev progress on this feature since the last post you can share?
Block / Override enforcement for Drag & Drop actions should be supported now as well.

@Naren- Any recent update? Do you have an estimate when WIP is going to be enabled by default?