Skip to the article
Browser Rules Help
Help centre
Browser Rules help

Set up Browser Rules in Chrome and Edge, managed from the admin console.

Using the admin console / Getting started

Name users when browsers aren't signed in

The console recognises people by the account signed in to Chrome or Edge. For browsers nobody signs in to, set the user by policy instead.

When people sign in to the browser with their work account, there's nothing to do: policies for their groups apply, and the audit log names them.

Otherwise, set userEmail for each person. It differs per person, so it goes in the user part of the registry (HKCU), which people can read but not change:

browser-rules-user.reg
Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\SOFTWARE\Policies\Google\Chrome\3rdparty\extensions\bjhkclliijjffonmofmimpebcbigigem\policy]
"userEmail"="[email protected]"

[HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Edge\3rdparty\extensions\bjhkclliijjffonmofmimpebcbigigem\policy]
"userEmail"="[email protected]"
  • Group Policy: add it under User Configuration, Preferences, Windows Settings, Registry. Where email addresses follow sign-in names, a value such as %LogonUser%@contoso.example sets it for everyone at once.
  • The policy email takes precedence over the browser's signed-in account.
  • Without either, only policies for all enrolled users apply to that browser.
Still stuck? We're happy to help.[email protected]