Firefox 157 and ESR 153.4: verify that enterprise policies actually work

Firefox lists a policy as active, but the intended setting does not work? For small IT teams, that list alone is insufficient evidence. Firefox 157 and ESR 153.4.0 are an opportunity to check errors, homepages and file handlers deliberately.

What Mozilla changed

The administrator release notes dated 29 September 2026 describe improved reporting of partially applied policies (bug 2067123). They also fix multiple Homepage URLs separated by | (2067248) and processing that stopped after an invalid mimeTypes entry in Handlers (2067099). Mozilla says these changes apply to Firefox 157 and ESR 153.4.0. They do not automatically make invalid settings valid. [1]

Prerequisites and backup

Use an approved test computer, know its deployment channel and obtain access to the configuration actually assigned to it. Export or back up the previous configuration in your existing management system. Record the expected homepages and file associations. End users should not bypass locked settings; the responsible IT team makes changes.

Five safe checks

  1. Record the baseline: Read the full Firefox version and channel. Enter about:policies in the address bar and inspect both active policies and errors. Record the policy name and affected entry; do not publish internal addresses.
  2. Interpret errors carefully: The bug report describes entries appearing active despite failed processing. A newly visible warning therefore does not by itself prove a new regression. Compare the message with the setting's actual behavior. [4]
  3. Check homepages: For Homepage, distinguish URL, Additional and StartPage. This policy covers startup and the Home button, not new-tab content. Test the intended startup mode; restoring a session does not prove that homepages work. [3]
  4. Check handlers: Inspect mimeTypes, extensions and schemes separately under Handlers. Use a known harmless sample file and, if relevant, an approved protocol. Does the application, prompt and action match expectations? Do not open unknown attachments or broadly disable security prompts. [2]
  5. Limit the change: Deploy an approved corrected configuration to the test computer first. Save work, fully quit and restart Firefox, then repeat both error and functional checks before expanding deployment. Browser updates should use the organization's designated channel.

If verification fails

If a policy is absent, check targeting and delivery before deleting any user profile. For persistent errors, compare values and data types with the official reference. If a configuration change fails, restore the saved configuration through the same management system and check again. This is not a blanket recommendation to downgrade Firefox.

Confirm the result

Verification is complete only when the expected configuration is assigned, the relevant error is resolved or explained, and homepages or handlers actually work after restarting. Record the version, date, expected and observed results, and rollback procedure. An empty error list is not a substitute for functional checks.

Date and sources

Checked: 07.10.2026. Manufacturer-based guidance, not our own Firefox test or a claim of a policy-related search boom. No affiliate links. These checks are editorial recommendations; full enterprise approval requires additional organization-specific testing.