--- title: EnterpriseDataProtection DDF file description: The following topic shows the OMA DM device description framework (DDF) for the EnterpriseDataProtection configuration service provider. ms.reviewer: manager: aaroncz ms.author: vinpa ms.topic: article ms.prod: w10 ms.technology: windows author: vinaypamnani-msft ms.date: 12/05/2017 --- # EnterpriseDataProtection DDF file The following topic shows the OMA DM device description framework (DDF) for the EnterpriseDataProtection configuration service provider. > [!IMPORTANT] > Starting in Windows 10, version 1703, AllowUserDecryption is no longer supported. Looking for the DDF XML files? See [CSP DDF files download](configuration-service-provider-reference.md#csp-ddf-files-download). The XML below is the current version for this CSP. ```xml ]> 1.2 EnterpriseDataProtection ./Device/Vendor/MSFT com.microsoft/1.0/MDM/EnterpriseDataProtection Settings EDPEnforcementLevel Maps to MDM "EDPEnforcementLevel" policy. text/plain EnterpriseProtectedDomainNames Maps to EnerpriseProtectedDomainNames MDM policy. text/plain AllowUserDecryption Deprecated. Recommendation is to always set to 1. When fetching this policy value, client will always return 1 regardless of what was originally set by server. text/plain DataRecoveryCertificate RevokeOnUnenroll text/plain RevokeOnMDMHandoff text/plain RMSTemplateIDForEDP text/plain AllowAzureRMSForEDP text/plain SMBAutoEncryptedFileExtensions text/plain EDPShowIcons text/plain Status Current state of Enterprise Data Protection configuration on the device. text/plain ```