Allow Microsoft Defender for Endpoint to enforce Endpoint Security Configurations???

  Рет қаралды 3,250

Dean Ellerby MVP

Dean Ellerby MVP

Күн бұрын

Пікірлер
@tuxmc
@tuxmc 4 ай бұрын
Great explanation! Do you have a video about the Endpoint deployment?
@thepete1338
@thepete1338 4 ай бұрын
Great explanation!!
@DeanEllerbyMVP
@DeanEllerbyMVP 4 ай бұрын
Thanks Pete!
@jonathang8571
@jonathang8571 4 ай бұрын
Clear as mud. ;) Question - we have this connection disabled in our tenant and we have our servers onboarded to Defender via GPO with their config settings, so if we enabled this, Intune would then take ownership of their defender settings?
@MrMarcLaflamme
@MrMarcLaflamme 4 ай бұрын
Thank you for addressing my question Dean! I still don't get it 100% but it's more clear than before. So if you are only using Intune to manage your fleet, keep the setting disabled because it's not going to help. If you start to incorporate other forms of management (ie GPO, other MDM), or if you are wanting to push MDE policies via Intune (keeping that single pane of glass) to devices that can't be managed by Intune (ie Servers) then you should turn it on (in both places). If that's correct, is there a reason for the on/off switch on both sides? Enable it in Intune AND in MDE? Seems strange, would you ever only turn on one side and not the other?
@DeanEllerbyMVP
@DeanEllerbyMVP 4 ай бұрын
That’s spot on, yes. I imagine the dual ‘on’ switch is to cater for organisations that have split responsibilities between Security and Device Management. This way, an Intune admin can’t make MDE do something without an MDE admin also making that happen, and vice versa. There might also be a technical reason :-)
@MrMarcLaflamme
@MrMarcLaflamme 4 ай бұрын
@@DeanEllerbyMVP gotcha! Or in my case it’s confusing because both of those people are me! 😂
@nazerbor3i
@nazerbor3i 4 ай бұрын
This is so confusing, I don’t know whether to turn this option on or off 😅
@DeanEllerbyMVP
@DeanEllerbyMVP 4 ай бұрын
:-) Let's put it this way... 90% of organizations have it turned on. 10% of organizations use it. I made that up, but hopefully you get the point.
@MrMarcLaflamme
@MrMarcLaflamme 4 ай бұрын
@@nazerbor3i From what I gather, if everything you have MDE on is managed by InTune and you configure Security Policies for MDE using InTune, keep it off. Otherwise turn it on.
@RubenHernandez-b9l
@RubenHernandez-b9l Ай бұрын
Well I am trying to manage servers using MDE. I have the correct settings applied. I have a group that has a few test servers in it. some are getting the policy and some are not. What is this settings for? "Manage Security settings using Configuration Manager" that is on the bottom of the enforcement page. We also use SCCM
@Egimatic
@Egimatic 4 ай бұрын
Is it recommended to run MS Defender alongside CrowdStrike? We only use defender now for telemetry aka passive mode
@DeanEllerbyMVP
@DeanEllerbyMVP 4 ай бұрын
You can run MDE in passive mode alongside any other EDR, sure. You shouldn't run it in Active mode, though.
@Wlp42
@Wlp42 4 ай бұрын
It's recommended to run MDE in passive mode alongside 3rd party EDR for the telemetry it can share to other products your org may use in m365; purview, intune, mdca, etc
@ericneo2
@ericneo2 4 ай бұрын
Sorry couldn't follow, I must have missed something. I'll check out the video again later.
@DeanEllerbyMVP
@DeanEllerbyMVP 4 ай бұрын
Thanks - it really isn't easy to grasp. Feel free to ask anything and I can try to explain further, or even make another (better!) explainer
@ericneo2
@ericneo2 4 ай бұрын
@@DeanEllerbyMVP Appreciate your videos though, thank you.
@DeanEllerbyMVP
@DeanEllerbyMVP 4 ай бұрын
Very kind @@ericneo2, thank you!
A quick guide to Defender for Endpoint deployment via Microsoft Intune
19:36
Secure Your Devices with Defender for Endpoint - Part 2
24:31
Jonathan Edwards
Рет қаралды 5 М.
How to treat Acne💉
00:31
ISSEI / いっせい
Рет қаралды 30 МЛН
Don’t Choose The Wrong Box 😱
00:41
Topper Guild
Рет қаралды 57 МЛН
VIP ACCESS
00:47
Natan por Aí
Рет қаралды 25 МЛН
NEVER install these programs on your PC... EVER!!!
19:26
JayzTwoCents
Рет қаралды 4,3 МЛН
Learn Microsoft 365 Threat Protection Policies in just 20mins
19:58
Andy Malone MVP
Рет қаралды 20 М.
Microsoft Defender for EndPoint Tech Overview!
25:18
Andy Malone MVP
Рет қаралды 41 М.
Microsoft Defender for Endpoint Problems on MacOS | Peter Rising MVP
30:24
Secure Your Devices with Defender for Endpoint - Part 1
37:05
Jonathan Edwards
Рет қаралды 11 М.
Defender for Cloud Apps - Lock Down Your Cloud Apps & Protect Data
20:50
Windows Defender vs Top 100 Malware Sites
10:15
The PC Security Channel
Рет қаралды 738 М.