Skip to content
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune

Written By Anoop C Nair
Last Updated July 1, 2026
Posted In Intune
SHARE

Hey, let’s learn how to Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune. This policy controls if locations on removable drives can be added to libraries in Windows. When the policy is enabled, users cannot add removable drive locations to libraries, and they also cannot be indexed. If the policy is disabled or not configured, then removable drive locations can be added to libraries and can be indexed.

The importance of this policy is that it helps organisations control data stored on removable drives. It protects sensitive data by preventing users from adding and indexing files from USB drives or other removable devices. This reduces risks like data leakage or malware spreading from external storage.

This policy helps users and organisations by improving security and managing storage. For users, it prevents confusion when dealing with multiple drives and libraries. For organisations, it ensures that important libraries contain only trusted and permanent storage locations.

Examples of this policy include blocking employees from adding USB drives to Windows libraries at work. Another example is in schools where students cannot add personal flash drives to school systems. In government offices, this policy prevents removable media from being indexed to protect confidential data.

Patch My PC

What are the Advantages of Enabling this policy using Intune?

Enabling this policy has clear advantages for both users and organisations. It improves security by preventing removable drives, like USBs, from being added to libraries and indexed. This reduces the risk of sensitive data being copied, shared, or exposed through external storage.

1. Protects sensitive data from being leaked through removable drives.
2. Reduces the risk of malware spreading via USB or external devices.
3. Ensures only trusted and permanent storage is used in libraries.
4. Helps organisations maintain compliance with data protection rules.
5. Prevents confusion for users by keeping libraries limited to stable storage locations.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune

Before enabling this policy, users can add removable drives like USBs to Windows libraries, and data from these drives can be indexed, which increases the risk of data leakage or malware. After enabling the policy, users cannot add removable drives to libraries, and data from external drives is not indexed. This improves security, protects sensitive data, and helps organisations control information stored or shared through removable devices.

  • Reducing Security Risks by Restricting Anonymous Access Using Intune Policy

Create a Profile

For deploying the Intune policy, we need to create a profile first. Then log in to the Microsoft Intune admin center with our credentials. Then, we need to navigate the Devices section, click Configurations, and create a new policy.

When we click the New Policy option, the Create Profile window will open. Here, we need to select the platform as Windows 10 and later, and the profile type is Settings Catalog from the list. Finally, click the Create option to continue.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.1
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.1

Basic Step

In this section, we provide the proper Name(e.g Disable Removable Drive Indexing) and Description(e.g To Disable Removable Drive Indexing) of the policy we want to deploy. This is a required section, and users must add it to continue creating Profiles.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.2
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.2

Configuration Settings

In the Configuration Settings section, you can see the Add Settings option. Click the Add Settings option, and then the Settings Picker window will open. Type Search in the search box and select Disable Removable Drive Indexing from the search results.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.3
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.3

After selecting the settings, we can close the settings picker window. Then we will be in the configuration settings. Here, we can see that the Disable Removable Drive Indexing is Disable. We need to click the next button to continue.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.4
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.4

Enable Removable Drive Indexing Policy

In the configuration settings, if we Enable or configure this policy, you can enable the policy Removable Drive Indexing by toggling the switch. Then click Next to continue.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.5
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.5

Scope Tags

We can skip this section, or we can add Scope Tags to your profile if we wish. It helps to assign this policy to a defined group of users or devices. Please note that adding Scope Tags is optional. If we decide to skip this section, simply click the Next button to continue.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.6
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.6

Assignments

In this section, we can add groups. Click the Add Group option under the Include Groups section to do this. After that, a new window will appear, and we can select a group from here. Then click on the Select button and click on the Next button.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.7
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.7

Review+ Create

The “Review + Create” is the final step in the policy creation process. In this stage, we will see a summary of the policy we are deploying, including the policy namedescriptionsplatform, and other details. After the review, just click Create, and then we can see the notification “Disable Removable Drive Indexing created successfully”.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.8
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.8

Monitoring Status

To check the monitoring status, go to Devices > Configuration Policies. In the Configuration policies section, search for the policy we created(Disable Removable Drive Indexing). We can find the result as 1 Succeeded. Use manual sync in the Company Portal to speed up the process.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.9
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.9

Client Side Verification

To check the Client Side Verification, we can use the Event Viewer. Go to Applications and Services Logs > Microsoft Windows > Device Management > Enterprise > Diagnostics > Provider > Admin to open it. From the list of policies, use the Filter Current Log option and search for Intune event 813.

MDM PolicyManager: Set policy int, Policy:DisableRemovableDrivelndexing) Area: (Search),
EnrollmentID requestinq merqe: (EB427D85-802F-46D9-A3E2-D5B41458/F63), Current User:
(Device), Int: (0x1), Enrollment Type: (0x6), Scope: (0x0).

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.10
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.10

How to Remove Assigned Group from Removable Drive Indexing Policy

Removing an assigned group from a policy is sometimes necessary for security, compliance, or operational efficiency. Open the policy from the Configuration tab and click on the Edit button on the Assignment tab. Click on the Remove button on this section to remove the policy. Click Review + Save after making the change.

For detailed information, you can refer to our previous post – Learn How to Delete or Remove App Assignment from Intune using by Step-by-Step Guide.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.11
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.11

How to Delete Removable Drive Indexing Policy from Intune Protal

To delete an Intune policy for security or operational reasons. I will demonstrate how to delete an Intune policy through the Disable Removable Drive Indexing. Click the three dots, then click the Delete option. You can see a confirmation message, click the Delete button.

For detailed information, you can refer to our previous post How to Delete Allow Clipboard History Policy in Intune Step by Step Guide.

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.12
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.12

Configuration Service Provider

The Policy Configuration Service Provider (CSP) is a feature used by organisations to manage and control settings on Windows 10 and 11 devices. It explains the Description framework properties, assigned values and group Policy Mapping.

Description framework properties: The following list shows the description framework properties of the Removable Drive Locations policy.

  • Format – Int
  • Access type – Add, Delete, Get, Replace
  • Default value – 0

Allowed values: The following table shows the Allowed Values of the Removable Drive Locations

ValueDescription
0(Default)Disable
1Enable
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Table.1

Group Policy Mapping

NameValue
NameDisableRemovableDrivelndexing
Friendly NameDo not allow locations on removable drives to be added to libraries
Location
Computer Configuration
PathWindows Components > Search
Registry Key NameSOFTWARE\Policies\Microsoft\Windows\Windows Search
Registry Value NameDisableRemovableDrivelndexing
ADMX File NameSearch.admx
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Table.2

./Device/Vendor/MSFT/Policy/Config/Search/DisableRemovableDriveIndexing

Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.13
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.13

OMA-URI Settings to Power Sleep Policy

An OMA-URI is a unique string used to configure specific settings on Windows 10 or 11 devices through a Configuration Service Provider (CSP). Its format is determined by the CSP and is used to apply custom device configurations.

To create a new policy in Microsoft Intune, sign in and navigate to Devices > Configuration. Click on Create to start a new policy. Choose the platform as Windows 10 or later. For the Profile type, select Templates, then choose Custom. Provide a name for the policy and add a description if needed.

  • Click on + Add under OMA-URI Settings to configure the specific setting.
  • To Configure the OMA-URI Setting, do the following
    • Enter a name for this setting, such as Disable Removable Drive Indexing.
    • Description of the setting: To Disable Removable Drive Indexing.
    • Enter the following OMA-URI path: ./Device/Vendor/MSFT/Policy/Config/Search/DisableRemovableDriveIndexing
    • Set the Data type to Integer.
    • Enter the value
      • 1. Disable Removable Drive Indexing Policy
      • 0. Enable Removable Drive Indexing Policy
  • After entering the above details, click the Save button.
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune - Fig.14
Enable Removable Drive Locations Policy in Windows for Indexing Control using Intune – Fig.14

Need Further Assistance or Have Technical Questions?

Join the LinkedIn Page and Telegram group to get the latest step-by-step guides and news updates. Join our Meetup Page to participate in User group meetings. Also, Join the WhatsApp Community to get the latest news on Microsoft Technologies. We are there on Reddit as well.

Author

Anoop C Nair has been Microsoft MVP from 2015 onwards for 10 consecutive years! He is a Workplace Solution Architect with more than 22+ years of experience in Workplace technologies. He is also a Blogger, Speaker, and Local User Group Community leader. His primary focus is on Device Management technologies like SCCM and Intune. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security, Career, etc.

Written by

Anoop C Nair is Workplace Technology solution architect with 25+ years of experience in global enterprise organizations such as JP Morgan, Capgemini, etc. Microsoft Certified Trainer. Microsoft MVP from 2015 onwards for consecutive 11+ years! He also conducts Intune and modern workplace tech training for enterprise organizations. He is Blogger, Speaker, and Founder of HTMD Community and HTMD Conference. His main focus is on Device Management technologies like Intune, Windows, Cloud PC. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security.

Discussion

Join the discussion

Your email address will not be published. Required fields are marked *

Related guides

Intune

Simplify Windows Devices to Run Only the Required Applications using Intune

Key Takeaways Hey, let’s learn about Simplify Windows Devices to Run Only the Required Applications using Intune. This policy lets administrators replace the default windows shell with a custom or lightweight shell. it improves performance by using system resources and is useful for devices that run a dedicated application. If the policy is disabled or […]

AC Anoop C Nair 8 min read
Intune

Enhance macOS Compliance with Custom Security and Compliance Checks to Improve Device Security using Microsoft Intune

Key Takeaways In this post we are discussing about Enhance macOS Compliance with Custom Security and Compliance Checks to Improve Device Security using Microsoft Intune. Microsoft has announced the general availability of Custom Compliance Settings for macOS in Microsoft Intune. The feature helps organizations strengthen security controls while supporting many types of macOS management scenarios. […]

AC Anoop C Nair 4 min read
Intune

Manage Samsung Galaxy Firmware Versions to Improve Security and Compliance using Microsoft Intune

Key Takeaways In this post we are discussing Manage Samsung Galaxy Firmware Versions to Improve Security and Compliance using Microsoft Intune. Microsoft Intune has received a new update that expands firmware management capabilities for Samsung Galaxy devices through Firmware Versionsintegration. This enhancement gives IT administrators more control over firmware and operating system updates, helping them […]

AC Anoop C Nair 4 min read
Intune

MS Intune Adds Windows Registry Data Collection to Device Inventory for Single Values All Key Values and Subkeys

Key Takeaways Microsoft Intune 2607 introduces Windows Registry Data collection in Device Inventory, allowing IT admins to verify actual device configurations without relying on custom discovery or remediation scripts. Using the Properties Catalog, admins can collect registry information through Single Value, All Values Under a Key (Non-Recursive), or Same Value Across Subkeys. MS Intune Adds […]

AC Anoop C Nair 5 min read