mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-06-18 03:43:39 +00:00
Update related topic indents and titles
This commit is contained in:
@ -27,6 +27,6 @@ localizationpriority: high
|
||||
3. Click **Save preferences**.
|
||||
|
||||
## Related topics
|
||||
- [Update general settings](general-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Turn on the preview experience](preview-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Configure email notifications](configure-email-notifications-windows-defender-advanced-threat-protection.md)
|
||||
- [Update general settings in Windows Defender ATP](general-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Turn on the preview experience in Windows Defender ATP](preview-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Configure email notifications in Windows Defender ATP](configure-email-notifications-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -45,7 +45,7 @@ You can sort and filter the alerts by using the available filters or clicking co
|
||||
Highlighted area|Area name|Description
|
||||
:---|:---|:---
|
||||
1 | Alert filters | Filter the list of alerts by severity, detection source, time period, or change the view from flat to grouped.
|
||||
2 | Alert selected | Select an alert to bring up the **Alert management pane** to manage and see details about the alert.
|
||||
2 | Alert selected | Select an alert to bring up the **Alert management** to manage and see details about the alert.
|
||||
3 | Alert management pane | View and manage alerts without leaving the alerts queue view.
|
||||
|
||||
### Sort, filter, and group the alerts list
|
||||
|
@ -11,7 +11,7 @@ author: mjcaparas
|
||||
localizationpriority: high
|
||||
---
|
||||
|
||||
# Check sensor health state
|
||||
# Check sensor health state in Windows Defender ATP
|
||||
|
||||
**Applies to:**
|
||||
|
||||
@ -52,4 +52,4 @@ In the **Machines view**, you can download a full list of all the machines in yo
|
||||
>Export the list in CSV format to display the unfiltered data. The CSV file will include all machines in the organization, regardless of any filtering applied in the view itself and can take a significant amount of time to download, depending on how large your organization is.
|
||||
|
||||
## Related topics
|
||||
- [Fix unhealthy sensors](fix-unhealhty-sensors-windows-defender-advanced-threat-protection.md)
|
||||
- [Fix unhealthy sensors in Windows Defender ATP](fix-unhealhty-sensors-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -11,7 +11,7 @@ author: mjcaparas
|
||||
localizationpriority: high
|
||||
---
|
||||
|
||||
# Configure email notifications
|
||||
# Configure email notifications in Windows Defender ATP
|
||||
|
||||
**Applies to:**
|
||||
|
||||
@ -61,3 +61,8 @@ This section lists various issues that you may encounter when using email notifi
|
||||
1. Check that the Windows Defender ATP email notifications are not sent to the Junk Email folder. Mark them as Not junk.
|
||||
2. Check that your email security product is not blocking the email notifications from Windows Defender ATP.
|
||||
3. Check your email application rules that might be catching and moving your Windows Defender ATP email notifications.
|
||||
|
||||
## Related topics
|
||||
- [Update general settings in Windows Defender ATP](general-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Turn on advanced features in Windows Defender ATP](advanced-features-windows-defender-advacned-threat-protection.md)
|
||||
- [Turn on the preview experience in Windows Defender ATP](preview-settings-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -11,7 +11,7 @@ author: mjcaparas
|
||||
localizationpriority: high
|
||||
---
|
||||
|
||||
# Fix unhealthy sensors
|
||||
# Fix unhealthy sensors in Windows Defender ATP
|
||||
|
||||
**Applies to:**
|
||||
|
||||
@ -75,3 +75,6 @@ If the endpoints aren't reporting correctly, you might need to check that the Wi
|
||||
If your endpoints are running a third-party antimalware client, the Windows Defender ATP agent needs the Windows Defender Early Launch Antimalware (ELAM) driver to be enabled.
|
||||
|
||||
If you took corrective actions and the machine status is still misconfigured, [open a support ticket](http://go.microsoft.com/fwlink/?LinkID=761093&clcid=0x409).
|
||||
|
||||
## Related topic
|
||||
- [Check sensor health state in Windows Defender ATP](check-sensor-status-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -33,6 +33,6 @@ During the onboarding process, a wizard takes you through the general settings o
|
||||
|
||||
|
||||
## Related topics
|
||||
- [Turn on advanced features](advanced-features-windows-defender-advacned-threat-protection.md)
|
||||
- [Turn on the preview experience](preview-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Configure email notifications](configure-email-notifications-windows-defender-advanced-threat-protection.md)
|
||||
- [Turn on advanced features in Windows Defender ATP](advanced-features-windows-defender-advacned-threat-protection.md)
|
||||
- [Turn on the preview experience in Windows Defender ATP ](preview-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Configure email notifications in Windows Defender ATP](configure-email-notifications-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -112,7 +112,7 @@ Expand an event to view associated processes related to the event. Click on the
|
||||
|
||||
This enhances the ‘in-context’ information across investigation and exploration activities, reducing the need to switch between contexts. It lets you focus on the task of tracing associations between attributes without leaving the current context.
|
||||
|
||||
### Related topics
|
||||
## Related topics
|
||||
- [View the Windows Defender Advanced Threat Protection Dashboard](dashboard-windows-defender-advanced-threat-protection.md)
|
||||
- [View and organize the Windows Defender Advanced Threat Protection Alerts queue ](alerts-queue-windows-defender-advanced-threat-protection.md)
|
||||
- [Investigate Windows Defender Advanced Threat Protection alerts](investigate-alerts-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -42,7 +42,6 @@ You can also download the entire list in CSV format using the **Export to CSV**
|
||||
|
||||

|
||||
|
||||
### Filter the Machines view
|
||||
You can use the following filters to limit the list of machines displayed during an investigation:
|
||||
|
||||
**Time period**</br>
|
||||
@ -74,7 +73,7 @@ You can download a full list of all the machines in your organization, in CSV f
|
||||
**Note**: Exporting the list depends on the number of machines in your organization. It might take a significant amount of time to download, depending on how large your organization is.
|
||||
Exporting the list in CSV format displays the data in an unfiltered manner. The CSV file will include all machines in the organization, regardless of any filtering applied in the view itself.
|
||||
|
||||
### Sort the Machines view
|
||||
## Sort the Machines view
|
||||
You can sort the **Machines view** by the following columns:
|
||||
|
||||
- **Machine name** - Name or GUID of the machine
|
||||
@ -88,7 +87,7 @@ You can sort the **Machines view** by the following columns:
|
||||
> The **Active malware detections** filter column will only appear if your endpoints are using [Windows Defender](windows-defender-in-windows-10.md) as the active real-time protection antimalware product.
|
||||
|
||||
|
||||
### Related topics
|
||||
## Related topics
|
||||
- [View the Windows Defender Advanced Threat Protection Dashboard](dashboard-windows-defender-advanced-threat-protection.md)
|
||||
- [View and organize the Windows Defender Advanced Threat Protection Alerts queue ](alerts-queue-windows-defender-advanced-threat-protection.md)
|
||||
- [Investigate Windows Defender Advanced Threat Protection alerts](investigate-alerts-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -99,7 +99,7 @@ Each rule shows:
|
||||

|
||||
|
||||
|
||||
### Related topics
|
||||
## Related topics
|
||||
- [View the Windows Defender Advanced Threat Protection Dashboard](dashboard-windows-defender-advanced-threat-protection.md)
|
||||
- [View and organize the Windows Defender Advanced Threat Protection Alerts queue ](alerts-queue-windows-defender-advanced-threat-protection.md)
|
||||
- [Investigate Windows Defender Advanced Threat Protection alerts](investigate-alerts-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -67,5 +67,5 @@ Icon | Description
|
||||
 | Indicates events that triggered an alert in the **Alert process tree**.
|
||||
|
||||
|
||||
### Related topic
|
||||
## Related topic
|
||||
[Use the Windows Defender Advanced Threat Protection portal](use-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -28,6 +28,6 @@ Turn on the preview experience setting to be among the first to try upcoming fea
|
||||
2. Toggle the setting between **On** and **Off** and select **Save preferences**.
|
||||
|
||||
## Related topics
|
||||
- [Update general settings](general-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Turn on advanced features](advanced-features-windows-defender-advacned-threat-protection.md)
|
||||
- [Configure email notifications](configure-email-notifications-windows-defender-advanced-threat-protection.md)
|
||||
- [Update general settings in Windows Defender ATP](general-settings-windows-defender-advanced-threat-protection.md)
|
||||
- [Turn on advanced features in Windows Defender ATP](advanced-features-windows-defender-advacned-threat-protection.md)
|
||||
- [Configure email notifications in Windows Defender ATP](configure-email-notifications-windows-defender-advanced-threat-protection.md)
|
||||
|
@ -23,7 +23,7 @@ localizationpriority: high
|
||||
|
||||
Windows Defender ATP adds various feature enhancements and capabilities in the February 2017 preview release.
|
||||
|
||||
Be among the first to try upcoming features by turning on the preview experience feature. For more information, see [Turn on the preview experience](preview-settings-windows-defender-advanced-threat-protection.md)
|
||||
Be among the first to try upcoming features by turning on the preview experience feature. For more information, see [Turn on the preview experience](preview-settings-windows-defender-advanced-threat-protection.md).
|
||||
|
||||
<span style="color:#ED1C24;">[Some information relates to pre-released product, which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.]</span>
|
||||
|
||||
|
@ -50,8 +50,8 @@ Setting the time zone also changes the times for all Windows Defender ATP views.
|
||||
To set the time zone:
|
||||
|
||||
1. Click the **Settings** menu .
|
||||
2. Select the **Timezone:UTC** indicator.
|
||||
3. The time zone indicator changes to **Timezone:Local**. Click it again to change back to **Timezone:UTC**.
|
||||
2. Select the **Timezone UTC** indicator.
|
||||
3. Select **Timezone Local** or **-8:00**.
|
||||
|
||||
## Suppression rules
|
||||
The suppression rules control what alerts are suppressed. You can suppress alerts so that certain activities are not flagged as suspicious. For more information see, [Suppress alerts](manage-alerts-windows-defender-advanced-threat-protection.md#suppress-alerts).
|
||||
|
@ -43,9 +43,9 @@ Topic | Description
|
||||
[Investigate alerts](investigate-alerts-windows-defender-advanced-threat-protection.md)| Investigate alerts in Windows Defender ATP which might indicate possible security breaches on endpoints in your organization.
|
||||
[Investigate files](investigate-files-windows-defender-advanced-threat-protection.md) | Investigate the details of a file associated with a specific alert, behavior, or event to help determine if the file exhibits malicious activities, identify the attack motivation, and understand the potential scope of the breach.
|
||||
[Investigate an IP address](investigate-ip-windows-defender-advanced-threat-protection.md) | Examine possible communication between your machines and external Internet protocol (IP) addresses.
|
||||
[Investigate a domain](investigate-domain-windows-defender-advanced-threat-protection.md) | Investigate a domain to see if machines and servers in your enterprise network have been communicating with a known malicious domain.
|
||||
[View and organize the Machines view](machines-view-overview-windows-defender-advanced-threat-protection.md)| You can sort, filter, and exporting the machine list.
|
||||
[Investigate machines](investigate-machines-windows-defender-advanced-threat-protection.md) | The **Machines view** shows a list of the machines in your network, the corresponding number of active alerts for each machine categorized by alert severity levels, as well as the number of threats.
|
||||
[Investigate a domain](investigate-domain-windows-defender-advanced-threat-protection.md) | Investigate a domain to see if machines and servers in your enterprise network have been communicating with a known malicious domain.
|
||||
[Investigate a user account](investigate-user-entity-windows-defender-advanced-threat-protection.md)| Investigate user accounts with the most active alerts.
|
||||
[Manage alerts](manage-alerts-windows-defender-advanced-threat-protection.md) | The **Manage Alert** menu on every alert lets you change an alert's status, resolve it, suppress it, or contribute comments about the alert.
|
||||
[Take response actions](response-actions-windows-defender-advanced-threat-protection.md)| Take action on a machine or file to quickly respond to detected attacks.
|
||||
|
Reference in New Issue
Block a user