All Please note the following from the fixes secti...
# citrix-app-layering
r
All Please note the following from the fixes section of the 2409 what's new because its very important: • "You can only update Microsoft Edge through Windows OS updates now. If you previously used an application layer to deploy Edge, that layer can’t be used in the image anymore, as Edge updates will be ignored. Make sure to keep Edge up to date when updating Windows versions. [UNI-90502] " This means we will no longer save changes that edge makes in an app layer. This is in response to many issue customers have had wiht edge so now you keep it in your OS layer and we ensure it wont bleed into other layers. This also applies to EdWebView2
p
Makes sense i guess. Will have to document that edgewebview2 needs to be on the os layer for WEM & the VDA? to install on a platform layer. Does this mean the edge specific "user exclusions" are baked in now, or do we still need that txt file in the OS layer?
r
Correct they are not longer needed
l
This is a pretty bad change for us since we always want to update Edge/Webview2 for security reasons and now we need to update the OS Layer and create a new image instead of just updating the elastic layer. There should really be an setting somewhere where you can enable this again.
p
I don't mind it. One less layer to update each month. Actually two, since they suggest Teams goes in the OS layer now also.
b
@Paul Brown, FWIW it's WEM that has the WebView2 dependency, not the VDA. We've been deploying WEM is an app layer for some time now w/o issue.
p
Same. But since it is a dependency it should be documented that it needs to be installed in the OS layer. If what Rob said holds true, install of WEM in platform layer will fail if WebView2 is not part of the OS layer.
d
We also keep Edge updated to latest version to keep security team happy. This is a 5 min job today with Elastic Layering, updating OS layer and publish a new PVS image is not a 5 min job. Why is this change needed?
Updated our test ELM to 2409, it seems like Edge/WebView2 data still get captured since I can see the files when i mount the layers VHD. I'm guessing its that its the Citrix Layering service that ignores the data. Is there no chance to make this change optional? If you have issues with WebView getting installed in different layers you can change the value of PV under HKLM:SOFTWARE\WOW6432Node\Microsoft\EdgeUpdate\Clients\{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5} and that wont be a issue. @Daniel Lazar @Rob Zylowski