windows-itpro-docs/windows/client-management/mdm/policy-csp-windowsconnectionmanager.md
Vinay Pamnani (from Dev Box) 29e044c903 MDM/CSP metadata changes
2024-01-18 12:26:53 -05:00

5.2 KiB

title, description, ms.date
title description ms.date
WindowsConnectionManager Policy CSP Learn more about the WindowsConnectionManager Area in Policy CSP. 01/18/2024

Policy CSP - WindowsConnectionManager

[!INCLUDE ADMX-backed CSP tip]

ProhitConnectionToNonDomainNetworksWhenConnectedToDomainAuthenticatedNetwork

Scope Editions Applicable OS
Device
User
Pro
Enterprise
Education
Windows SE
IoT Enterprise / IoT Enterprise LTSC
Windows 10, version 1803 [10.0.17134] and later
./Device/Vendor/MSFT/Policy/Config/WindowsConnectionManager/ProhitConnectionToNonDomainNetworksWhenConnectedToDomainAuthenticatedNetwork

This policy setting prevents computers from connecting to both a domain based network and a non-domain based network at the same time.

  • If this policy setting is enabled, the computer responds to automatic and manual network connection attempts based on the following circumstances:

Automatic connection attempts

  • When the computer is already connected to a domain based network, all automatic connection attempts to non-domain networks are blocked.

  • When the computer is already connected to a non-domain based network, automatic connection attempts to domain based networks are blocked.

Manual connection attempts

  • When the computer is already connected to either a non-domain based network or a domain based network over media other than Ethernet, and a user attempts to create a manual connection to an additional network in violation of this policy setting, the existing network connection is disconnected and the manual connection is allowed.

  • When the computer is already connected to either a non-domain based network or a domain based network over Ethernet, and a user attempts to create a manual connection to an additional network in violation of this policy setting, the existing Ethernet connection is maintained and the manual connection attempt is blocked.

  • If this policy setting isn't configured or is disabled, computers are allowed to connect simultaneously to both domain and non-domain networks.

Description framework properties:

Property name Property value
Format chr (string)
Access Type Add, Delete, Get, Replace

[!INCLUDE ADMX-backed policy note]

ADMX mapping:

Name Value
Name WCM_BlockNonDomain
Friendly Name Prohibit connection to non-domain networks when connected to domain authenticated network
Location Computer Configuration
Path Network > Windows Connection Manager
Registry Key Name Software\Policies\Microsoft\Windows\WcmSvc\GroupPolicy
Registry Value Name fBlockNonDomain
ADMX File Name WCM.admx

Policy configuration service provider