Allow Microsoft Defender for Endpoint to enforce Endpoint Security Configurations???

  Рет қаралды 3,614

Dean Ellerby MVP

Dean Ellerby MVP

Күн бұрын

Пікірлер: 22
@cristhiansaid
@cristhiansaid 2 сағат бұрын
excelente video me scaste una duda que todo el internet no pudo
@tuxmc
@tuxmc 5 ай бұрын
Great explanation! Do you have a video about the Endpoint deployment?
@thepete1338
@thepete1338 5 ай бұрын
Great explanation!!
@DeanEllerbyMVP
@DeanEllerbyMVP 5 ай бұрын
Thanks Pete!
@jonathang8571
@jonathang8571 5 ай бұрын
Clear as mud. ;) Question - we have this connection disabled in our tenant and we have our servers onboarded to Defender via GPO with their config settings, so if we enabled this, Intune would then take ownership of their defender settings?
@andrewenglish3810
@andrewenglish3810 2 күн бұрын
@DeanEllerbyMVP this is a good video but at the same time Microsoft doesn't give you an idea how to properly setup Intune AV for MDE devices such as servers. So right now my servers are 2 weeks behind in backups because the AV is blocking Active Backup for Business on my my Hyper-V hosts and I don't see a direct way of disabling AV...
@Egimatic
@Egimatic 5 ай бұрын
Is it recommended to run MS Defender alongside CrowdStrike? We only use defender now for telemetry aka passive mode
@DeanEllerbyMVP
@DeanEllerbyMVP 5 ай бұрын
You can run MDE in passive mode alongside any other EDR, sure. You shouldn't run it in Active mode, though.
@Wlp42
@Wlp42 5 ай бұрын
It's recommended to run MDE in passive mode alongside 3rd party EDR for the telemetry it can share to other products your org may use in m365; purview, intune, mdca, etc
@RubenHernandez-b9l
@RubenHernandez-b9l 2 ай бұрын
Well I am trying to manage servers using MDE. I have the correct settings applied. I have a group that has a few test servers in it. some are getting the policy and some are not. What is this settings for? "Manage Security settings using Configuration Manager" that is on the bottom of the enforcement page. We also use SCCM
@MrMarcLaflamme
@MrMarcLaflamme 5 ай бұрын
Thank you for addressing my question Dean! I still don't get it 100% but it's more clear than before. So if you are only using Intune to manage your fleet, keep the setting disabled because it's not going to help. If you start to incorporate other forms of management (ie GPO, other MDM), or if you are wanting to push MDE policies via Intune (keeping that single pane of glass) to devices that can't be managed by Intune (ie Servers) then you should turn it on (in both places). If that's correct, is there a reason for the on/off switch on both sides? Enable it in Intune AND in MDE? Seems strange, would you ever only turn on one side and not the other?
@DeanEllerbyMVP
@DeanEllerbyMVP 5 ай бұрын
That’s spot on, yes. I imagine the dual ‘on’ switch is to cater for organisations that have split responsibilities between Security and Device Management. This way, an Intune admin can’t make MDE do something without an MDE admin also making that happen, and vice versa. There might also be a technical reason :-)
@MrMarcLaflamme
@MrMarcLaflamme 5 ай бұрын
@@DeanEllerbyMVP gotcha! Or in my case it’s confusing because both of those people are me! 😂
@nazerbor3i
@nazerbor3i 5 ай бұрын
This is so confusing, I don’t know whether to turn this option on or off 😅
@DeanEllerbyMVP
@DeanEllerbyMVP 5 ай бұрын
:-) Let's put it this way... 90% of organizations have it turned on. 10% of organizations use it. I made that up, but hopefully you get the point.
@MrMarcLaflamme
@MrMarcLaflamme 5 ай бұрын
@@nazerbor3i From what I gather, if everything you have MDE on is managed by InTune and you configure Security Policies for MDE using InTune, keep it off. Otherwise turn it on.
@ericneo2
@ericneo2 5 ай бұрын
Sorry couldn't follow, I must have missed something. I'll check out the video again later.
@DeanEllerbyMVP
@DeanEllerbyMVP 5 ай бұрын
Thanks - it really isn't easy to grasp. Feel free to ask anything and I can try to explain further, or even make another (better!) explainer
@ericneo2
@ericneo2 5 ай бұрын
@@DeanEllerbyMVP Appreciate your videos though, thank you.
@DeanEllerbyMVP
@DeanEllerbyMVP 5 ай бұрын
Very kind @@ericneo2, thank you!
A quick guide to Defender for Endpoint deployment via Microsoft Intune
19:36
Microsoft Defender for EndPoint Tech Overview!
25:18
Andy Malone MVP
Рет қаралды 41 М.
Support each other🤝
00:31
ISSEI / いっせい
Рет қаралды 81 МЛН
Quando eu quero Sushi (sem desperdiçar) 🍣
00:26
Los Wagners
Рет қаралды 15 МЛН
Using Defender for Endpoint for Deep Ransomware Investigation
34:47
Jackson Felden - Cloud and Security
Рет қаралды 3,8 М.
Secure Your Devices with Defender for Endpoint - Part 1
37:05
Jonathan Edwards
Рет қаралды 14 М.
Microsoft Ignite 2024 Overview | MSFT EDU Endpoint Office Hours
59:06
Microsoft EDU Endpoint Office Hours
Рет қаралды 95
Secure Your Devices with Defender for Endpoint - Part 2
24:31
Jonathan Edwards
Рет қаралды 7 М.
Windows Hardening Guide | 2024 Edition
50:00
Ken Harris
Рет қаралды 18 М.
Defender for Cloud Apps - Lock Down Your Cloud Apps & Protect Data
20:50
Jonathan Edwards
Рет қаралды 10 М.
Microsoft Sentinel Setup and Configuration
24:09
AzureVlog
Рет қаралды 29 М.
Get Started with Microsoft Defender for 365
24:29
Andy Malone MVP
Рет қаралды 45 М.
NEVER install these programs on your PC... EVER!!!
19:26
JayzTwoCents
Рет қаралды 4,7 МЛН
Support each other🤝
00:31
ISSEI / いっせい
Рет қаралды 81 МЛН