CertificateTransparencyEnforcementDisabledForUrls

Disable Certificate Transparency enforcement for a list of URLs

Supported on:

  • Chrome (Windows) since version 53

Description:

Setting the policy turns off Certificate Transparency disclosure requirements for the hostnames in the specified URLs. While making it harder to detect misissued certificates, hosts can keep using certificates that otherwise wouldn't be trusted (because they weren't properly publicly disclosed).

Leaving the policy unset means that if certificates requiring disclosure through Certificate Transparency aren't disclosed, then Samsung Browser doesn't trust those certificates.

However, because the validity of certificates for a given hostname is independent of the scheme, port, or path, Samsung Browser only considers the hostname portion of the URL. Wildcard hosts aren't supported.

Supported features:

  • Applied to browser without restart. Note that some ongoing tasks may not be affected.
  • Applied at Samsung Browser level, cannot be set by Cloud user policies.

Data type:

List of strings

Windows registry location:

Software\Policies\Samsung\Internet\CertificateTransparencyEnforcementDisabledForUrls

Example value:

Software\Policies\Samsung\Internet\CertificateTransparencyEnforcementDisabledForUrls\1 = example.com
Software\Policies\Samsung\Internet\CertificateTransparencyEnforcementDisabledForUrls\2 = .example.com

More policies under Miscellaneous: