From 3429d0dfbf1262497b4725167194dacd21119cda Mon Sep 17 00:00:00 2001 From: eavena Date: Mon, 31 Oct 2016 14:06:22 +1100 Subject: [PATCH 01/23] Created new file --- ...ows-defender-advanced-threat-protection.md | 61 +++++++++++++++++++ 1 file changed, 61 insertions(+) create mode 100644 windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md new file mode 100644 index 0000000000..fd5d451a1e --- /dev/null +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -0,0 +1,61 @@ +--- +title: Configure Email Notifications +description: Use Group Policy to deploy the configuration package on endpoints so that they are onboarded to the service. +keywords: configure endpoints using group policy, endpoint management, configure Windows ATP endpoints, configure Windows Defender Advanced Threat Protection endpoints, group policy +search.product: eADQiWindows 10XVcnh +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +author: eavena +localizationpriority: high +--- + +# Configure email notifications + +## second + +**Applies to:** + +- Windows 10 Enterprise +- Windows 10 Education +- Windows 10 Pro +- Windows 10 Pro Education +- Windows Defender Advanced Threat Protection (Windows Defender ATP) + +Windows Defender ATP supports email notifications to be sent to recipients list on every new alert in the portal. +Email notifications are equivalent to ‘New Alerts’ queue, so that every new alert added to the queue will be sent over email to recipients according to the chosen severities. +Every email includes basic information on the new alert and a link to the portal specific alert’s page for further investigation. + +To configure email notifications open email notifications preferences page on the right pane: +Preferences Setup  Email Notifications +In email notifications preferences page, you can define the following: + + 1. Alert Severity - severity of alerts to be notified on. By default, High and Medium alerts will be sent. + + 2. Email recipients - define the email recipients within your organization to be notified on new alerts. + + 3. Click ‘Save Preferences’. +Note: to check that email recipients are able to receive the emails click ‘Send a test Email’. +Emails are sent from @WDATP.microsoft.com + +Troubleshooting: consider adding info in case emails are not received (maybe due to rules blocking the domain, emails moved to junk/….) + + +1. + +2. + +3. + +- one +- two + +> +> Not a note + + +--- | ---| + + +[Hyperlink](actual link) From fb6fc8302080221acff90079c7cccdd056d046a2 Mon Sep 17 00:00:00 2001 From: eavena Date: Mon, 31 Oct 2016 14:16:22 +1100 Subject: [PATCH 02/23] update --- ...notifications-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index fd5d451a1e..f48249f55e 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -54,7 +54,7 @@ Troubleshooting: consider adding info in case emails are not received (maybe due > > Not a note - +gfghf --- | ---| From 5764a38d4a502934ae76c3edf07a59c865648000 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Sun, 27 Nov 2016 14:11:14 -0800 Subject: [PATCH 03/23] email notification draft --- ...ows-defender-advanced-threat-protection.md | 60 +++++++++---------- 1 file changed, 30 insertions(+), 30 deletions(-) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index f48249f55e..4b58023e04 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -1,20 +1,18 @@ --- -title: Configure Email Notifications -description: Use Group Policy to deploy the configuration package on endpoints so that they are onboarded to the service. -keywords: configure endpoints using group policy, endpoint management, configure Windows ATP endpoints, configure Windows Defender Advanced Threat Protection endpoints, group policy +title: Configure email notifications +description: Send email notifications to specified recipients to receive new alerts. +keywords: email notifications, alert notifications, alerts, notification search.product: eADQiWindows 10XVcnh ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library ms.pagetype: security -author: eavena +author: jcaparas localizationpriority: high --- # Configure email notifications -## second - **Applies to:** - Windows 10 Enterprise @@ -23,39 +21,41 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -Windows Defender ATP supports email notifications to be sent to recipients list on every new alert in the portal. -Email notifications are equivalent to ‘New Alerts’ queue, so that every new alert added to the queue will be sent over email to recipients according to the chosen severities. -Every email includes basic information on the new alert and a link to the portal specific alert’s page for further investigation. +You can configure Windows Defender ATP to send email notifications to specified recipients for new alerts. This feature enables you to identify a group of individuals who will immediately be informed and can act on alerts based on their severity. -To configure email notifications open email notifications preferences page on the right pane: -Preferences Setup  Email Notifications -In email notifications preferences page, you can define the following: - - 1. Alert Severity - severity of alerts to be notified on. By default, High and Medium alerts will be sent. +You can set the severity level that triggers notifications for specific recipients. When you turn enable the email notifications feature, it’s set to high and medium alerts by default. - 2. Email recipients - define the email recipients within your organization to be notified on new alerts. - - 3. Click ‘Save Preferences’. -Note: to check that email recipients are able to receive the emails click ‘Send a test Email’. -Emails are sent from @WDATP.microsoft.com +You can also add or remove recipients of the email notification. New recipients get notified about alerts encountered after they are added. For more information about alerts, see [View and organize the Alerts queue](alerts-queue-windows-defender-advanced-threat-protection.md). -Troubleshooting: consider adding info in case emails are not received (maybe due to rules blocking the domain, emails moved to junk/….) +The email notification includes basic information about the alert and a link to the portal where you can do further investigation. +## Set up email notifications for alerts +The email notifications feature is turned off by default. Turn it on to start receiving email notifications. -1. +1. On the navigation pane, select **Preferences Setup** > **Email Notifications**. +2. Toggle the setting between **On** and **Off**. +3. Select the alert severity level that you’d like your recipients to receive: + - **High (high alerts only)** – Select this level if you’d like to limit notifications to threats often associated with advanced persistent threats (APT). + - **Medium** – Select this level to receive notifications that were flagged as medium severity. + - **Low** - Select this level to receive notifications that were flagged as low severity. +4. In **Email recipients to notify on new alerts**, type the email address then select the + sign. +5. Click **Save preferences** when you’ve completed adding all the recipients. -2. +Check that email recipients are able to receive the email notifications by selecting **Send test email**. -3. +## Delete email recipients -- one -- two +1. Select the trash bin icon beside the email address you’d like to remove. +2. Click **Save preferences**. -> -> Not a note +## Troubleshoot email notifications for alerts +This section lists various issues that you may encounter when using email notifications for alerts. -gfghf ---- | ---| +**Intended recipients do not receive the email alerts** +**Problem:** Intended recipients report they are not getting the notifications, even if you can successfully send the test email from the Windows ATP portal. -[Hyperlink](actual link) +**Solution:** Make sure that the notifications are not blocked by email filters: +1. Check that the Windows Defender ATP email notifications are not sent to the Junk Email folder. Mark them as Not junk. +2. Check that your email security product is not blocking the email notifications from Windows Defender ATP. +3. Check your Outlook rules for any rule that are catching and moving your Windows Defender ATP email notifications. From 2147626a3095d2ecdc2f11e710226344ad063324 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Sun, 27 Nov 2016 14:41:30 -0800 Subject: [PATCH 04/23] fix author name --- ...notifications-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index 4b58023e04..3c0db1fa42 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -7,7 +7,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library ms.pagetype: security -author: jcaparas +author: mjcaparas localizationpriority: high --- From 32dccf9c3f38afdb0259d929b9315965560ddb35 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Sun, 27 Nov 2016 14:43:57 -0800 Subject: [PATCH 05/23] add email notifications topic --- windows/keep-secure/TOC.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/keep-secure/TOC.md b/windows/keep-secure/TOC.md index eaedfbf278..4fcb331871 100644 --- a/windows/keep-secure/TOC.md +++ b/windows/keep-secure/TOC.md @@ -744,6 +744,7 @@ ##### [Configure an Azure Active Directory application for SIEM integration](configure-aad-windows-defender-advanced-threat-protection.md) ##### [Configure Splunk to consume Windows Defender ATP alerts](configure-splunk-windows-defender-advanced-threat-protection.md) ##### [Configure HP ArcSight to consume Windows Defender ATP alerts](configure-arcsight-windows-defender-advanced-threat-protection.md) +#### [Configure email notifications](configure-email-notifications-windows-defender-advanced-threat-protection.md) #### [Troubleshoot Windows Defender ATP](troubleshoot-windows-defender-advanced-threat-protection.md) #### [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md) #### [Windows Defender compatibility](defender-compatibility-windows-defender-advanced-threat-protection.md) From d6c529ee44945adf896f0dd82fa5f5c729e7430f Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Sun, 27 Nov 2016 15:34:59 -0800 Subject: [PATCH 06/23] edits based on louie's comments --- ...ions-windows-defender-advanced-threat-protection.md | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index 3c0db1fa42..befdb6dee3 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -23,7 +23,7 @@ localizationpriority: high You can configure Windows Defender ATP to send email notifications to specified recipients for new alerts. This feature enables you to identify a group of individuals who will immediately be informed and can act on alerts based on their severity. -You can set the severity level that triggers notifications for specific recipients. When you turn enable the email notifications feature, it’s set to high and medium alerts by default. +You can set the alert severity levels that trigger notifications. When you turn enable the email notifications feature, it’s set to high and medium alerts by default. You can also add or remove recipients of the email notification. New recipients get notified about alerts encountered after they are added. For more information about alerts, see [View and organize the Alerts queue](alerts-queue-windows-defender-advanced-threat-protection.md). @@ -35,9 +35,9 @@ The email notifications feature is turned off by default. Turn it on to start re 1. On the navigation pane, select **Preferences Setup** > **Email Notifications**. 2. Toggle the setting between **On** and **Off**. 3. Select the alert severity level that you’d like your recipients to receive: - - **High (high alerts only)** – Select this level if you’d like to limit notifications to threats often associated with advanced persistent threats (APT). - - **Medium** – Select this level to receive notifications that were flagged as medium severity. - - **Low** - Select this level to receive notifications that were flagged as low severity. + - **High** – Select this level if you’d like to limit notifications to threats often associated with advanced persistent threats (APT). + - **Medium** – Select this level to send notifications for medium-severity alerts. + - **Low** - Select this level to sebd notifications for low-severity alerts. 4. In **Email recipients to notify on new alerts**, type the email address then select the + sign. 5. Click **Save preferences** when you’ve completed adding all the recipients. @@ -58,4 +58,4 @@ This section lists various issues that you may encounter when using email notifi **Solution:** Make sure that the notifications are not blocked by email filters: 1. Check that the Windows Defender ATP email notifications are not sent to the Junk Email folder. Mark them as Not junk. 2. Check that your email security product is not blocking the email notifications from Windows Defender ATP. -3. Check your Outlook rules for any rule that are catching and moving your Windows Defender ATP email notifications. +3. Check your email application rules that might be catching and moving your Windows Defender ATP email notifications. From 6d44eeb34625a35bd45b70af787d350737305e9a Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Mon, 28 Nov 2016 14:18:24 -0800 Subject: [PATCH 07/23] modifications based on SME feedback --- ...windows-defender-advanced-threat-protection.md | 15 +++++++++------ 1 file changed, 9 insertions(+), 6 deletions(-) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index befdb6dee3..923df37659 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -23,6 +23,9 @@ localizationpriority: high You can configure Windows Defender ATP to send email notifications to specified recipients for new alerts. This feature enables you to identify a group of individuals who will immediately be informed and can act on alerts based on their severity. +> [!NOTE] +> Only users with full access can configure email notifications. + You can set the alert severity levels that trigger notifications. When you turn enable the email notifications feature, it’s set to high and medium alerts by default. You can also add or remove recipients of the email notification. New recipients get notified about alerts encountered after they are added. For more information about alerts, see [View and organize the Alerts queue](alerts-queue-windows-defender-advanced-threat-protection.md). @@ -35,25 +38,25 @@ The email notifications feature is turned off by default. Turn it on to start re 1. On the navigation pane, select **Preferences Setup** > **Email Notifications**. 2. Toggle the setting between **On** and **Off**. 3. Select the alert severity level that you’d like your recipients to receive: - - **High** – Select this level if you’d like to limit notifications to threats often associated with advanced persistent threats (APT). + - **High** – Select this level to send notifications for high-severity alerts. - **Medium** – Select this level to send notifications for medium-severity alerts. - - **Low** - Select this level to sebd notifications for low-severity alerts. + - **Low** - Select this level to send notifications for low-severity alerts. 4. In **Email recipients to notify on new alerts**, type the email address then select the + sign. 5. Click **Save preferences** when you’ve completed adding all the recipients. -Check that email recipients are able to receive the email notifications by selecting **Send test email**. +Check that email recipients are able to receive the email notifications by selecting **Send test email**. All recipients in the list will receive the test email. -## Delete email recipients +## Remove email recipients 1. Select the trash bin icon beside the email address you’d like to remove. -2. Click **Save preferences**. +2. Click **Save preferences**. ## Troubleshoot email notifications for alerts This section lists various issues that you may encounter when using email notifications for alerts. **Intended recipients do not receive the email alerts** -**Problem:** Intended recipients report they are not getting the notifications, even if you can successfully send the test email from the Windows ATP portal. +**Problem:** Intended recipients report they are not getting the notifications. **Solution:** Make sure that the notifications are not blocked by email filters: 1. Check that the Windows Defender ATP email notifications are not sent to the Junk Email folder. Mark them as Not junk. From 6cf28f7ad9697cfde6d27b064987139aa88e3d97 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Mon, 28 Nov 2016 14:38:25 -0800 Subject: [PATCH 08/23] fix spacing --- ...-notifications-windows-defender-advanced-threat-protection.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index 923df37659..ee330e3afd 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -59,6 +59,7 @@ This section lists various issues that you may encounter when using email notifi **Problem:** Intended recipients report they are not getting the notifications. **Solution:** Make sure that the notifications are not blocked by email filters: + 1. Check that the Windows Defender ATP email notifications are not sent to the Junk Email folder. Mark them as Not junk. 2. Check that your email security product is not blocking the email notifications from Windows Defender ATP. 3. Check your email application rules that might be catching and moving your Windows Defender ATP email notifications. From e4c031952b0fe8319af8398231da03d52f0cccab Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 29 Nov 2016 18:35:46 -0800 Subject: [PATCH 09/23] remove redundant line --- ...notifications-windows-defender-advanced-threat-protection.md | 2 -- 1 file changed, 2 deletions(-) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index ee330e3afd..e0427308c8 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -54,8 +54,6 @@ Check that email recipients are able to receive the email notifications by selec ## Troubleshoot email notifications for alerts This section lists various issues that you may encounter when using email notifications for alerts. -**Intended recipients do not receive the email alerts** - **Problem:** Intended recipients report they are not getting the notifications. **Solution:** Make sure that the notifications are not blocked by email filters: From eeed3edc32493bcc6cd1d7a1901080724b2c3389 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 30 Nov 2016 10:33:23 -0800 Subject: [PATCH 10/23] fix seo metatags based on seo review --- ...fications-windows-defender-advanced-threat-protection.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md index e0427308c8..19e99c915d 100644 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -1,7 +1,7 @@ --- -title: Configure email notifications -description: Send email notifications to specified recipients to receive new alerts. -keywords: email notifications, alert notifications, alerts, notification +title: Configure email notifications in Windows Defender ATP +description: Send email notifications to specified recipients to receive new alerts based on severity with Windows Defender ATP on Windows 10 Enterprise, Pro, and Education editions. +keywords: email notifications, configure alert notifications, windows defender atp notifications, windows defender atp alerts, windows 10 enterprise, windows 10 education search.product: eADQiWindows 10XVcnh ms.prod: w10 ms.mktglfcycl: deploy From d6c0b3d82044817a39e2279b17157aad9e7898a7 Mon Sep 17 00:00:00 2001 From: JanKeller1 Date: Tue, 6 Dec 2016 14:58:31 -0800 Subject: [PATCH 11/23] Fixed typo/cut&paste error --- windows/keep-secure/credential-guard.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/credential-guard.md b/windows/keep-secure/credential-guard.md index ce40f1c03f..83de899fdb 100644 --- a/windows/keep-secure/credential-guard.md +++ b/windows/keep-secure/credential-guard.md @@ -244,7 +244,7 @@ For more info on virtualization-based security and Device Guard, see [Device Gua **Turn off Credential Guard by using the Device Guard and Credential Guard hardware readiness tool** -You can also enable Credential Guard by using the [Device Guard and Credential Guard hardware readiness tool](https://www.microsoft.com/download/details.aspx?id=53337). +You can also disable Credential Guard by using the [Device Guard and Credential Guard hardware readiness tool](https://www.microsoft.com/download/details.aspx?id=53337). ``` DG_Readiness_Tool_v2.0.ps1 -Disable -AutoReboot From 7ee6c265615fc57dc2913601dc67ff8df71b91d6 Mon Sep 17 00:00:00 2001 From: JanKeller1 Date: Tue, 6 Dec 2016 18:50:04 -0800 Subject: [PATCH 12/23] Fixed run-on heading --- .../trusted-platform-module-services-group-policy-settings.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md b/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md index d927f73825..8621397fcd 100644 --- a/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md +++ b/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md @@ -71,6 +71,7 @@ For information how to enforce or ignore the default and local lists of blocked - [Ignore the default list of blocked TPM commands](#bkmk-tpmgp-idlb) - [Ignore the local list of blocked TPM commands](#bkmk-tpmgp-illb) + ### Ignore the default list of blocked TPM commands This policy setting allows you to enforce or ignore the computer's default list of blocked Trusted Platform Module (TPM) commands. From 56ad3caa9ae3722406597a486d9188738e487059 Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Wed, 7 Dec 2016 07:46:08 -0800 Subject: [PATCH 13/23] note feedback --- .../implement-microsoft-passport-in-your-organization.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md index 6f24db9595..a4444b25e1 100644 --- a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md +++ b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md @@ -20,7 +20,7 @@ localizationpriority: high You can create a Group Policy or mobile device management (MDM) policy that will implement Windows Hello on devices running Windows 10. >[!IMPORTANT] ->The Group Policy setting **Turn on PIN sign-in** does not apply to Windows Hello for Business. Use the **Turn on PIN sign-in** setting to allow or deny the use of a convenience PIN for Windows 10, versions 1507, 1511, and 1607. +>The Group Policy setting **Turn on PIN sign-in** does not apply to Windows Hello for Business. Use the **Turn on PIN sign-in** setting to allow or deny the use of a convenience PIN for Windows 10, version 1607. > >Beginning in version 1607, Windows Hello as a convenience PIN is disabled by default on all domain-joined computers. To enable a convenience PIN for Windows 10, version 1607, enable the Group Policy setting **Turn on convenience PIN sign-in**. Learn more in the blog post [Changes to Convenience PIN/Windows Hello Behavior in Windows 10, version 1607](https://blogs.technet.microsoft.com/ash/2016/08/13/changes-to-convenience-pin-and-thus-windows-hello-behaviour-in-windows-10-version-1607/). > From b6511778469834dd7ddaa415700ed6709dc17ebc Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Wed, 7 Dec 2016 08:03:28 -0800 Subject: [PATCH 14/23] n/a --- .../manage/windows-10-start-layout-options-and-policies.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/manage/windows-10-start-layout-options-and-policies.md b/windows/manage/windows-10-start-layout-options-and-policies.md index c3b3979f29..85a835748e 100644 --- a/windows/manage/windows-10-start-layout-options-and-policies.md +++ b/windows/manage/windows-10-start-layout-options-and-policies.md @@ -68,12 +68,12 @@ The following table lists the different parts of Start and any applicable policy Recently added - +not applicable Settings > Personalization > Start > Show recently added apps Pinned folders - +not applicable Settings > Personalization > Start > Choose which folders appear on Start From 217965caaa4f0cd86c348e40fb0e3d3d5b23e34f Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Wed, 7 Dec 2016 08:50:35 -0800 Subject: [PATCH 15/23] Bluetooth --- devices/surface-hub/change-history-surface-hub.md | 1 + .../connect-and-display-with-surface-hub.md | 10 +++++++++- 2 files changed, 10 insertions(+), 1 deletion(-) diff --git a/devices/surface-hub/change-history-surface-hub.md b/devices/surface-hub/change-history-surface-hub.md index 7439819195..f974394314 100644 --- a/devices/surface-hub/change-history-surface-hub.md +++ b/devices/surface-hub/change-history-surface-hub.md @@ -18,6 +18,7 @@ This topic lists new and updated topics in the [Surface Hub Admin Guide]( surfac | New or changed topic | Description| | --- | --- | +| [Connect other devices and display with Surface Hub](connect-and-display-with-surface-hub.md) | Added information about Bluetooth accessories. | | [Manage settings with an MDM provider](manage-settings-with-mdm-for-surface-hub.md) | Updated example procedures to include screenshots. | ## November 2016 diff --git a/devices/surface-hub/connect-and-display-with-surface-hub.md b/devices/surface-hub/connect-and-display-with-surface-hub.md index 28001227cc..7ea1888105 100644 --- a/devices/surface-hub/connect-and-display-with-surface-hub.md +++ b/devices/surface-hub/connect-and-display-with-surface-hub.md @@ -13,7 +13,7 @@ localizationpriority: medium # Connect other devices and display with Surface Hub -You can connect other devices to your Microsoft Surface Hub to display content. This topic describes the Guest Mode, Replacement PC Mode, and Video Out functionality available through wired connections. +You can connect other devices to your Microsoft Surface Hub to display content. This topic describes the Guest Mode, Replacement PC Mode, and Video Out functionality available through wired connections, and also lists accessories that you can connect to Surface Hub using [Bluetooth](#bluetooth-accessories). ## Which method should I choose? @@ -470,3 +470,11 @@ Video Out port on the 84" Surface Hub +## Bluetooth accessories + +You can connect the following accessories to Surface Hub using Bluetooth: + +- Mice +- Keyboards +- Headsets +- Speakers \ No newline at end of file From 4ac3c53824e72d9d3649d14f7ab73cc815956966 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 7 Dec 2016 11:32:30 -0800 Subject: [PATCH 16/23] service health content --- ...der-defender-advanced-threat-protection.md | 54 ++++++++++++++++++ windows/keep-secure/TOC.md | 1 + ...ows-defender-advanced-threat-protection.md | 4 +- windows/keep-secure/images/status-tile.png | Bin 10357 -> 8592 bytes 4 files changed, 58 insertions(+), 1 deletion(-) create mode 100644 service-status-windows-defender-defender-advanced-threat-protection.md diff --git a/service-status-windows-defender-defender-advanced-threat-protection.md b/service-status-windows-defender-defender-advanced-threat-protection.md new file mode 100644 index 0000000000..67ff6607bc --- /dev/null +++ b/service-status-windows-defender-defender-advanced-threat-protection.md @@ -0,0 +1,54 @@ +title: Check the Windows Defender ATP service status +description: Check Windows Defender ATP service status, see if the service is experiencing issues and review previous issues that have been resolved. +keywords: dashboard, service, issues, service status, current issues, status history, summary of impact, preliminary root cause, resolution, resolution time, expected resolution time +search.product: eADQiWindows 10XVcnh +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +author: mjcaparas +localizationpriority: high +--- + +# Check the Windows Defender Advanced Threat Protection service status + +**Applies to:** + +- Windows 10 Enterprise +- Windows 10 Education +- Windows 10 Pro +- Windows 10 Pro Education +- Windows Defender Advanced Threat Protection (Windows Defender ATP) + +The **Service health** provides information on the current status of the Window Defender ATP service. You'll be able to verify that the service status is healthy or if there are current issues and the details related to the issue such as when the issue was detected, what the preliminary root cause is, and the expected resolution time. + +You'll also see information on historical issues that have been resolved and details such as the date and time when the issue was resolved. When there are no issues on the service, you'll see a healthy status. + +You can view details on the service status by clicking the tile from the **Dashboard** or selecting the **Service health** menu from the navigation pane. + +The **Service health** details page has the following tabs: + +- **Current issues** +- **Status History** + +## Current issues +The **Current issues** tab shows the current state of the Windows Defender ATP service. When the service is running smoothly a healthy service status is shown. If there are issues seen on telemetry or detection functionality, and the **Deep analysis** feature, the following service details are shown to help you gain better insight about the issue: + +- Date and time for when the issue was detected +- A short description of the issue +- Update time +- Summary of impact +- Preliminary root cause +- Next steps +- Expected resolution time + +## Status history +When an issue is resolved, it gets recorded in the **Status history** tab. The **Status history** tab reflects all the historical issues that were seen and resolved. The following service details are shown to help you gain better insight about the historical issues: + +- Date and time for when the issue was detected +- Preliminary root cause +- Next steps +- Resolution time + +### Related topic +- [View the Windows Defender Advanced Threat Protection Dashboard](dashboard-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/TOC.md b/windows/keep-secure/TOC.md index eaedfbf278..4fae3b3944 100644 --- a/windows/keep-secure/TOC.md +++ b/windows/keep-secure/TOC.md @@ -740,6 +740,7 @@ ##### [Investigate a domain](investigate-domain-windows-defender-advanced-threat-protection.md) ##### [Manage alerts](manage-alerts-windows-defender-advanced-threat-protection.md) #### [Windows Defender ATP settings](settings-windows-defender-advanced-threat-protection.md) +#### [Windows Defender service status](service-status-windows-defender-defender-advanced-threat-protection.md) #### [Configure SIEM tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) ##### [Configure an Azure Active Directory application for SIEM integration](configure-aad-windows-defender-advanced-threat-protection.md) ##### [Configure Splunk to consume Windows Defender ATP alerts](configure-splunk-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md index 112382f305..bf76aa1170 100644 --- a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md @@ -56,10 +56,12 @@ Click the name of the machine to see details about that machine. For more inform You can also click **Machines view** at the top of the tile to go directly to the **Machines view**, sorted by the number of active alerts. For more information see, [Investigate machines in the Windows Defender Advanced Threat Protection Machines view](investigate-machines-windows-defender-advanced-threat-protection.md). ## Status -The **Status** tile informs you if the service is active and running and the unique number of machines (endpoints) reporting over the past 30 days. +The **Status** tile informs you if the service is active or if there are issues and the unique number of machines (endpoints) reporting to the service over the past 30 days. ![The Status tile shows an overall indicator of the service and the total number of machines reporting to the service](images/status-tile.png) +For more information on the service status, see [Check the Windows Defender ATP service status](service-status-windows-defender-defender-advanced-threat-protection.md). + ## Machines reporting The **Machines reporting** tile shows a bar graph that represents the number of machines reporting alerts daily. Hover over individual bars on the graph to see the exact number of machines reporting in each day. diff --git a/windows/keep-secure/images/status-tile.png b/windows/keep-secure/images/status-tile.png index 8c4b1e335618ded8db3350ca90f6b712929203b8..2ab17ccff19277c52a63f7c8cb08a0c22dbbe8a3 100644 GIT binary patch literal 8592 zcmch7XH=6-v~CmyM2Zwa0Ra&Km7*xUSpw2~4bppWp?47JpeP`OA|N$FXaNaQq=@uh zLq~d(5<1}y-?z?P=dN|nuY1p71$Z-=cfT`x_B_wt&m=-c=`|S%JqZK?A(NGXszD%^ z*1>frF(LR{y8V6*{JZ8Pqw5NRkT+laUP^dG&Hx&T;IfKRL^GsB)GQ<`?T7rJfp(IM_E(NhUM|*_R&dBSicS&G zO8!r)i@EVdR~ERny*Y&cfZ`hXW&t04`UZ|h`!VLMfdCf7`JvcwKE1?T_9Br z6>*@M_@Y_c*u}xx!4lHIuowo~i2l9b&BfFlf;$gc`;Ts~9PRDR9pI4t&cu4qMtIRp z!y0a94$0r_=YT+1AhOUG8lI^elL2;m3z>p{dF`ja%D3Ov%`&TfA}>F{KyT8_pc~x6 z(1D|wq*UybvE@!i-j!eR*3Gj(+mY#W=OiiJ>@V%lnQP_#qY1qq%~(7bsM8UZ(}{4u zybfb(yxZcap3M@*r75;W59@y;Jtf)byE~+UjL+(brySEjYLBS6SqImha(NoWz77o?EpC?`7DU{Xe$7J=v_G(AU>5ffcoIl7La%wf8jg z5o3yuiFpyv*4fpSSzb=Pv9S>jWhD-M`8gw_RnM_DG&Yv}(6=szhy3D($;$8FzvnwN z&pWS=qp#~#(&Xk$EVvlk*pP^ei-V_qci*7D92Dp|HS6@Hu#f~i>=q*>bhOI8QSEw*nYnd;13SCzSr$84=O;SlwRC4Yl}%R2XP+xoX{ivkwC(v=SUAE-=o_{w z(G|o(LU}MzWftdW1R|u(tntquHV8|a5<%eTa0+nX#6+s6!^!@J3>%dSjrq{M){kv$ zDF}qyiLV6nslVj$$;l-MZPZnZ^4qUoy(+9_G#h55wX1*61o^>*Ecc*PL zQ`gV{PPAPz*_9#aK>;rO@rF9fS_R1+L)cd?=sSi9wObuCr_T-y)2>~71%z%{UtY7 zTHAq@b==cq+ONt}OhST(si(8k=wNd)zqt4p@P`Ec(3El!@!}_ekGp&2@{+Sinv+Oc zi4GU>mCH^wlU|6XA}!=**mHID0Zd1#T+T2~1T0OoJvPx~eRT*qig9~Xh(un3@bmL~ z)n^aApRV((aj36cG|(CN+C;Sk z%do{)MZmD9WL*4~sDz%SkdB4m7Lzs`RTkE)7!X+@W_;HmR<^bTC4;pXw>2$i1&doq zb`B1y2KJA#ot>TGOBDbNfult|Hs7+z%H$1ziAnP%)BNLM7|EOL1W+}kV0DSZn(_+@W|v)9vslNfT{*_b$9ut$x3`_& z)Ox!Oq0%xk=+Lv{<1qb_3;%&xjdX%3KI+a;%DXEY@2RxG%bOTHQX(oMa)bDaQ5CkO zE;5oNRosWRsi{e~wWp_tAaL^#${G|K8>?wJu;8-d@SQ3G3J=ggkG<3chL~PwtLl^K zVc+(Tj^@|&b+89B(lr_g3brHwMU ziMDWKfxEe(t=Q}R&oIB^YPRb1uKX}YG!In|?e6YkawC23?E|l=YHM?(GcYsv2wVCH zUx1Acmx*3H+mqj&Ht0q(z6jMhfE3Fc8#h~RZAT4IbV1LbM^hbm*8=dE)3Gn9dBX!R zptLAWO&SVqamKA`4vvguV=(k1D8p6|+p7BdF&Yo=r=ZZ4_SkpH$+!F1inZwJXlbDh z93N#V`ynctnxSzL$HbbNni$uDyG7}y+4jGSWY7F1)4djNg9t_rMb5Xz&8K-x{X{s{ zCA+Ot`2Qsk``bVuCcsQ6B46fy=ghXs*Wu+QjNVvmGF{YmJRuzT&vTbDfj~DglQVLZ>Gtgh z#@1H+w?+|fr?*;dQMKB0Lut7vU$59zIkt zG>ltZw16}Kur7X69UK~Z)med)Cb(mvvA0)6wL<}#1Ng9cet&8ls<;9B0?aLs{_oE+wBR2E3|xI1f!c02EPiTmXwr~OEkZ84L3I%#ymXK4#wJ@Djf1EjNINcIl|#)WY#Cm^OAuTE;q`2 zh)_|-^X?2uiu!5rimRIPmR~ni)Iq{vu*Z)d2LfxQTRBMvrJJw~f^D@DMcc!)XG5f;<;uG|(1~u<`==l2pcr?a3{F zx{Lt4mnuq@Ax?45T;|SMZAt-*0sspJmF;I=cZ3C-o=K;P=T-gb0yk* zii|avWF_g)R`zYaY%oa6o^(X|y*p7YPKSSu_YMwFUMaGyAD#yUNRl&4MC)+5t1svb zAJ*GVR7ZphTpKRw_?`UJ5`OPz9LUqumpVK+p2^0SI8IAU_-xgFKikK;^#J^dqT^*v zQ;PE2sypEU@uw~BW~WGXeyQ^Z>BRP(hCNiMxL_am1sk-Ik&yv{M~-UILE6RGU6~Uk z3Egjdou3`F%!~W%PiPow6qgvRC|NbcFmN57`IC~9N6w@p5ZKSX_&@70=jKM#Me>Vs zdXZT(pPyEr6_Sq#jk+fTP z?u3rn(Vh(U@_cR%fSjN0_s^gE`&fhQ+r@+o`vt@g>j&b0K$_;^qesq5X&xq9Q?=jW zD{5Lgs48AxD=T82B>Bz}Fq)9o`3Idp)X?rllNQ{Fa83>|hk|e4XySG!_ZsH6S*RkG zk3VZB@fvnxkg9hHi@~IS&N_uxk7ue7M`le->`~fpz;cGmZjVEux}$6c(iL4Z$%1^s z0eCSx0fv{ED%~aBIayhkmBn!yFWUD9)s-`|vR>LzkdseMTtlPReuY#YP*Z+rXyCag zfKU{>7}4|=Q3=g(JsyWD55^Q1lOIe6NQ#Jx0whT0pDWMK&Nd=w2K%A6ukUW9Y3b;3 zp11jMv7X`g?azK=P^fUJ?2l-;hsS&Kb+-Yx>N zwp%a!|IYmUw&eKhX9$th$CJj!%S?WIs_SFrL~-K#qvM;Am1^867Z!CvTTyPA z2k`Raa4rf{;x5E^i=Mt68!!R#b;}GtT8FBd8P{Ar7_7`@8+hwiscGxXwx^ay{2RZK zWStIn*7ima@{^O3PC|^r8LmQ%wke5d%5Pea6xcr&OET!thcCKRYf1dHImsVOQiOiJ z2!XHfTv%@0IN4txQ>PUa{_9FhZP!kh-TQb7uVh@=7viNoh&iEIUSNfz@q`fyEJGmi8vq zb!!2KvYTh?9qa@y)o*kUws>BNm<+T3XiK?96`?mGi$Gv$flCaeR$18sb1H=Qh`^pLf*ceP60Zx@HK(u zcQDoZu6JKI(QV#nuyx@v?YrTyAjPX6#w^A8`Q1!2Rt#@{uP8{+(;=uPLh)6^!~g)3 z(?`)Z6go=DL0hzAjf-}?YlS@jesPGthG>n60xqfWYg~b2mIq!A%c;^#?%(m4P|b?J zaWjsq!<=Eb5P`dAk z8lN`u-Lqcy<5jp@OSAxpt-bUyHok=Vu_G5DFJ%i*&UE@54*&tms#@8lQ>sHs$Mfa} zcHuBos)BOx1WzDOz}s z+kAE~o#A0jmDTkNpceDs0=)dw(02fDa{5{wXKS{9Yt0ut!Hn)1bLN+57r30_4x(`NchZdbIoZ$oCzh z%~$~OTgRg+%6xox4en&)OHLF)!r-_}f z?hU^kVdaZ7$pEH+_(CLc;gmZqZ8+0YuTCv*k}QL5gO+c2v_) zOij)0L@2cChE~phtAg=g=TiTNPEwhGfk2^%h}QWRoHSI}w6rwfLr`;I=D}ot81VjE zWV`kJ>+7Sh?AQw6U{m-rIwBFM%Z82n`$Asmvz@c>~nF<_=(8@M4O~V_Die zIRnO2XmVJVuvWkoMq6q56Zys)PC_@x!zjtaW_OR8mt2jEAP!Xw5KxxEQT)jYbNtE1 zWRMj&J!k~Q03=X_^NN&ev+ZC&;fR5cV%7Al6A=0=o;Hnt0jNlo)NvI#M1mT*4!L@r zJ8$4x-hl3V*PBht%T@(Z&nt`p3w2tQAEqL|X(5T#kwb+@RU~>QB_+kYr-;l{HXe?) zPdKja2f&V-2)#}Rfq?o7>B*rH3v9=0JiO3vN;h_o+5>e)kBzYE&G zt&G&DK)NW$Z_5z^bRW!n!O%vN$m#Tpm2QjOneOhar{B3W?^U8}6m{RoK~s6DeK3 zdW|i0>9zAKX>BSc0kt|p~A7X_{W zLaMxKWbJ0xuuYeaUrge$@bcDHSese9O;NnL?pv4K*;!-Ab8T(ypHug4G85Fu07+%S zL6D0!iih;fzrL7xH8YH<-G+xEtVzgwFaHon3i)YtgF<}o{icv^qVsIyRc9U?fqnTH zNFZ7E0hd}N^w1H=Fz z5PXm^J3G{h>mfClQU&=Li)?%*riYV(pe8(3iKB7$F_4F(ik?zMgi~Z3ulcyRsQr*8 zdkz9bHolqY8GVce?xUiDf?4Qy`nuZM+By2_I#QUP9wjMZi@T4HsG06Nt_~|lN4gXA z!eILk2TRL5D{or|hhOXKcHQ+6$4r9UON*B4K|= zM@Lgo^Kg-trB^5SBn&x`Bfb8yZJ&jfzg_W_$SAhfNlP!K0`)T}FIQGpQbXi+KCoH0 z{4_8?X+KjH1c6dptAFMDanvMG+g4c0xJ)mU1#=xF5J$*F1^c8`0^qp=*7{NLZDzq> z!?ICPW;9tnBY|L?xf|5VJw(#pwVCzf_&ds?pR=&QQU||iz0#>oKhAz3f9BlXARsYZ z64eZJjY{f>D2S#<<*R+ktkq9O7-vWdvRvs)8pe0rGpCxDg5f#t+~Y7 zcwEU%dmYGdo-tXRy82e*T6|$mcO?)u*R=ptH>Gly4pi@I};r)$0?xF=)FYuwurZ%E%XywaM9krH-WS*J>Qx!K4 z4^JV(wkP9%=+5d#Dl}L9{QOSmbaQ~TRDnh(U~a)bzTu(E>f_v!bC3E@@+58RhE-tk;Ab;wMtdu&Z?)jqBn^k>j7RcF$d9`VJm-fexL$2 zH)y_cnA&27T^;ir>SoNJd-G|P9GHlB$)0v8a`4VBGgNQsD*ejl!J7ymW}SrK*T=bD z`(O?4sc5f_E12mHU)=*rsiij!InCN!afDdhiaS%5YRcVn?Ye;kbO}~QJx+jPszxQj^*!1t5Q}fIcn0J!CaK%sP z4Gpn1A+*AYVR|{YWD}`R?PUPqGDBXF)`AaUoRzBUB`20A|kFi`!2o|FSL3VNkBwy zrr!hnl9%^7RokzYs{;tj9mUK*I&JX*8zLkm1XE^JPgGFM>0CK5xL# z=)6|Gb#Z5Zke^GUmf|8PXGieCX9sdRzTV7V+qqfyfbrRY^Coxa7}2^)O}esGTtGnn zHT%4|LwEHAp?w#ZyGYxa>MHfaF6Q${%YZ$_3qvQXkG5BEye+QhOZE6%AIXdEXPN9` z-)lhN8;BhA)ai$8XM04`zt6;9*S9a_|G(4QczNgbhV{p zQOy`|Kqc;99HIe(y65_}2E1&tFr2XCRXZxf>^*Jca@v6v-kp84obs=-l+oR4&jk_u z5wqh2F@BJO;qU5+^^@L0)$z)8FZ@QvDg?3-gLM|JW{I6t*9&@-;rF5Zo21VdLggP` zQg*he^X+Lo5p$7XW_fs06$?@M=RhG;eE z+w&N9K?Lld?#Wd=+AmtD#{EW%aZWbS@6+dJs^@?BZKL>v zpSWK(0!nsMN>xk0$$;BUHO1(0K2}gjNT+uVBG2EqF#L`gh#hTau+lckk!fZ569Ymb zqCUWrHnkwBTLNkkc$2cr7!wmClQS$p{k61|GE+syuA{7zeVdeYo&R_#U?OPxbQ^`q zoqm(ujHb`A7k)Lr-_9*_?sFY~+UDEsKdNvMe*x#ymL@054COM0=W5#7wYtgXew%4D z`+tsJ{4Em2)1~`Z9#Q11tYQC##W|4v!k+I`9A@q)duYyvjI9ZuyW>PF?|N-)nds^5 z;&(ZaCqcWb*)fML9(6$-ZK0ZXlz)Lteb&9E4~u=2;x>d^2+Fbe^PB~O=py_#2>^L1 zIQRRkkQ`c!F(U5W0C+NK6;rdxA;BL379$IrR8)?p$_T%l@ z0gqn;`rI!abhv(;ojc(yZU^J7nT!Q^`R&$m3&^wuCK+)BSs2Q=R(V}oaC~trXK&A42UM;odwnBt1ZHY%oXK_-9CNUWgM8Uk m|KdzT)ystWKb^VHoD($c+%_OSlsg5cA+l0R(BhXy!T$?##DF;f literal 10357 zcmd6N2T)Vrx^EDrX(&=n3<#(o9SMZqi=Ze{qzj1BR6=hGK}zUEM2dpM0D=VRC@mC4 ziXc*?DG+)MEupvYw&(uOoOkD*bMDNWcjvv#BzyK=-`eZ9zV-DlF-AA_z)TP(5C{a; zzou;r0-dM_foS*{P5{5L;6?&4K;vz!rwJ*`HsE~nrBU~eBkR3TToot3}WPY~h!Wf(iwb@|sZ zUxcn1Ip^2?fzGsLmf$URk>%)=D&%;%;GJPMMkRqO{$Ka@0!3i2=6F4Wf?gZEYPpwW z@N;u%pir0)xN#Yo3c7U5L; zN%e~uEYV9jBDlv`vxJZ(9zso1huMl;d9?)pVgNZBmh^P1nMEyk%G2?$)!@s~AvOBKNAL8_I4{)*Zhr8b zzuOIKbC>`a$7yEQ@Kj+TvAya-$L)Z@yU%S`7#8cfb5WRU?`}9c7M@#WSS*v=e;hjA zF1o37R&D@Rc5^Mb*IO?-t6akHN#fXQG;x0|+V&rZ{DKJe2n<~8j;LO4B`*9Coma%f z=tu7iY>a<7YA@!gA>MJJ@CI7C7|-D9&lUdK4 zR>$hH>EDY0f_uC^8Lo!RJob7}eDrb>it;2#yXxo_2o`*0_hC>b5A&;r9PX+l^0G~_ zJyBm^#SGJGMg@H3WmWttxE>UoR#*@YNr;xig}6B=&Ljce+x zU3kCn#3L&=%-<-&e9a-R(fCJq!Mo+g!kEd?e<2QBX2q(Zs3)K9zf?SFUr2nbPLoRn z@zm2`7Qg}8$R@!cTHaphdNeUqFC!?tQB-=}U(-YV;S((aUr}3fGCSfP@%58%=0-)0 z;$4YP1xJ+5D%P!qow0$bB{$|92Hwc`e4RmYVNooHu3Jw&QRUIq(yDpSCR^4pwa?9S zMqM5wd!&EtL4PT9v12QY6i$RcX>Cv=M1T)Rz9NYPPuZb-M0!+R;;OwJPlK z_sLWO;YS{Ef&tfN+BW)l2`n$SNvE8Rm|*)4)Rjx%#hn$;QDbBiMvai8sCm;c}eYM}_4fs@Zc5%pMqB-cC0b`jp@$UfmQek;mGPc>ek#iy zJgRs1wePOo@ybrn;p$4&D!c2KV(>WB*j1%VW`j5}W7nI+iOkWc@3$GFi2r3_WyObhgL?;$=nI48?BzNn<6BsyoRmi|ljRQ)7* zwt&@Vc`SXSO5NlE>n0tv5@B(8vZ=W_{IqYDjM+AZXy3d=*DD$?x%SD*Hww4izFv=u zgYSf*SHT7S33GgNqHndf(M#(7v0z)Lk)pC4^!|f+)iZ<8&Dh#wcn4nT%m_a~8`mOW zrr2{R69?{AsRbbR)oYyzd?0-v8Bkm~a{(ZDarXhe>$4-MeBAjW+D$ZDHiD<#A(Cjn ziRKIn?}gr30P7+xaR2P#xpKq|V(?HR9u;Rfy2{dIYiGxDO!~fwPI=}SjtL@nj-IX8 zK9%O!Ck31*Z5ukTmPch&hG-KjEuO@!rGzorYTRg|hIRX8TsB-suC5W8GOO}V) z#rvHWtNO3IPJIl>B5w0SE4e8p_7CH>45mH~G`_Ljr0Wv%l>Q{7vfKIIO?};Vda2js<4r@e0nwc^A{)V+x3j#crPnZg-7VhzhS~wsv%h zrB^XxSJ#A(dZ2gadZC~6{ux(4ErGG2x3I=YP&^Uz)-sk^?QlK(G$?U&qzY+!K@k)X zwg7s2u9rq#CYv_YNt+(j70nEK%?1O(M?@5DY;Eh`H(XpohKQ$KM`5KJ)amVOgLI>! zqUcddrZfW7XRn0St4sGt&&ac8+!B(KP}OYZ}?&}wJc6P?aomSbVeyrBk}_7SzSJwj0A-$-QcU=8;0pPKDV(~ff8kQU8#B?W#Oe3+nol0Y3<+e&YX zOo#L9orM`6z2Z2bUH?UtU-3pdCe`O~KKQk`xDorYNlsHrOXZ_;Fv6pgC$gJOTR64x z$QgyM;}?S5Ly$h6%hjR^oYuNg6Dh(1x%=n46cl%N3lO>c-17sCC*)31D=K8tNE$ea z)Rn6n+HA1eb%SVTlUWp-L~-pSCZ?rJf$8hYwqIqP+X_>@@hkdFrm(^;-*67#(;*#s zqBV1&gR?~mjDHQ}iMzw|_KV+SW-j|4HD`GGw6F24bi|iP&-20je2a&hNR8Fi*S2CZ z9{99RYr6f8tZaSN8oj4SPbObaQCZ*b?(Q}To|@x^Jq_L7>BjEVQ?(Rg7d*VZr>Cnh zG~ZKNcK1Nw3o7F_=XHEacXykAbX|T}x~D_G>8;(%udJ+WbH}bjd4;sReBoJu`PeNPt6weA`1F z2WHZn#i?J=$-%R6jAnBVroE;CM!gf5sb~H1rtsW2JH`a{3Cwry1d$nqFv!3ZAFICM zhNh3YE3t;Q_J5bcId+)OiVzG5!(y@BTL(iUO7=d(9>@~%Z&eft7bVU;9s`!#n{YY{ zi!ILiT*7s1TFHc;^G_K#`(WIHQdID?;4N27*qk}YO97&jzi3}TIn^UJm&uBo~YpCM`Y50filc6~~TE5m+r!;9p^&;p%UcE819?)AF9F00HKtT7;2<%6CJW!}L6zSp~igH5A)jEF}2Y2Tfpj%Q^{O&*^N^zxeG0=U2S=-v3Y^G;9FfX~= z;^-iTn*_|)De#&vPGeSJ8z~q1fhpZ> z46!x5MZWaAj>Hc6@#BZh@OjAU>Z%Q~$&q;7^>OW>kp?D1E1V4`^#szL$N<@6VshVf zNsDGkvK-DpAmJ6<{Sf$-)Rp2}F4Z+PmJ(?lFl`|Z?igVtpz@awrkjlXTrJ* zOq!>NcTTpdpNo>z3K|iCgVII+m2CVM;pymER{=deK5E18eS@rj^=_<>vz!V$aY>Ul zq9^n$jz-f(J*Ef54}Yue63PlO5`e2SfQ8v07b56hGJsh%X$>Oi7;rTIcgX$b>Z-=? zQupS^56Pk`_)III=$@W#*V(BlfdQe!p7oyt0|O6cfkK0<%1=_`(OotiHGdo4mdgs+ z54?Tb2e9!<#J`EYqosuymusT?V9TjvLuo}|-1C?peq&^BuZCqt(cjA}vCznf^dEJ)nB=8}%z=hS}PbMZ^m zi|GDJ-FQ?=@TuEhPaT_W+-#MOKohGnS4bs|+d-y&&w8X(($dmYooWW98!g0?o$)1X zmd!w6=eikm`h;ck``yy*(_jF&l@S9tIZf!aq7xIlyMFRe+$p5HyRiv-OBe%9BJ=G8 zwN=^pSe8OvFT7e*?Q?D+_>GKv1k50Mgeh|0SI@{oUq;33WZ1slYosCrn8XTk`VzG? zGjnkO5i4JAdGz?S>X4MUYT}WmR&-&%DK=*>3N5jwF}G$Z;(4v;mAvh>BS98Yb~DFx z7%Rkz4RTrREWy-nZEmjB+rZ83EYkX#ThNkHgO>Cu)vyTk9X)Oc2gB4DeNA<>2X5Lo z$~n~(E2ya@s@Yu0NiW&WywrE&@l*!4^>&f8AiPolz{--f#xsvp5!UFzrObLQa;4N? zT{%(I6Sg)WtK&3!c&zl+Sc_<(Ozbl*h=FK}}#NLy06@mF8dM++HF6qjAYNP-J zF0Qgw(wJoPH;{Aos6Essi@srn#~GZ1d7r_&3l;Y{YQ4rB3~Oo8A*Efte7_aoAN{SRVKL}eKdKu*>o1`PORBH?=9Wf6Uv)-32s64U4An> zKGsDGsBEGre0XJLWp;LUk*jj|yM&l`1YNr{n(mSA|EN;KhkDkt_j{dh^UIoLFY(cM zE6gNFEZi3L{Cw=zH1G;AD)563{OHj(hV|o19(A&EwSa;Tt|T&N!G!=DGY5mj zCfUR9uV=sEh8Fo%*V4PEz0O}T|7aynVi5~` zVLs~xuN9Mc$eXgUW*OwxkR&4iTxUQ$aKO2I{BRD@%YzAtbt_I8m@&Y!xG>{1^lsOw znu+WYef+-_s@^P~OQw_uTEdEyMLjjzR1^K5GIpD6Eo6BPpZ{0|m>l5%wYVs|^=sQX zEyTnJjse%>1I;g`cA0Yqf7{?DiG9*of_~7cL|fF12)?eivcs3vtByQ(^3s@;UiRX6 zY7_h%9;6fbG=KgH!J>oGkkT!dCGHemAferzo_#x#&eLbTv_El6s*|O-@1cfS*R*D|o9y)$^jFR5k8Te*2AkLl!kLg>o$q~n}^ z8L4H%+RcjH^N%~<6zjdJ;MfVFXjb~40W0zaSOmF+7%8IZ%)QClXJux*m(Dq=+Pe4`+OiV9vmo}Sf-7PF4)Tq{6*m^YI}f~gGo!6O$isz1=Qjh73^Ko>7&r5zaqmo z-&sBY4>M{ur}}Y1o`xlv@^Ss2`%Ggr-GJu|2gI0BZ~15bEevk5jSpoC1Ib6DFxt>fzy`j#G_I7Vyc;%-xUUj%%3$oUAzT7Um_X!0?}^9xwtf4oGrEuz+QE z<@{K9TOpzY@QWg%uZ(i?Pk=(hc@&Y=4GljkA`T9on5F1ezZSi$kZgn}udh#}@*XZL zs9aaQf-lPK$_08wZ4Nzz&-1@WMn+7J7lkgdLVq-5sWo;@_)7=nGB*?^sri2H9#BE9 zizl1XfF|V6q#;H}M;Ek7x1>&f6yu6Bbv4Fn1cu*vap(6hG!%NL8(LgaGLSB!c9dHX zv~B9z0j+$~vR{8Q?M?MpXIZ$b)>&E*PX&fgt)b)n>&vF9C~D?qLeLga4)6cndY!Wn zf}5nE_lr(p4K}>J-#E2*4^Aa}u5~LeEEl)DlYji=BXkw9n-FiYR1+B9Il}~!QY*1* z3;~K5odz5fo5|)VmJT}O2Z9vzi<`$SF@6~YhXeM~jnG57P<$Y9;`;^TXW|=l8;@D8 z8-hZwn54cXe4cIfZnS!-l53!QTGxQBN|^8g4^&Ob7jM^XoK?Xu>&CsjG?%38`K#s+ zu$W&$y@Ldt{JEi9!?xNX&pWYWt{RWByk9FTkvDX&s|Xo|Z60?*1n7oU*2#s#H{-T01X})# z4Yabt^LtKek=`%+U-p)}NqVKhAaG4=*8uDZ_0xcUJ|ocl|9YLKL^V>EfV%iE1nSUj44dbc z1xL_n5JUOLh{T5W%&e?DMjmnLS~cL?Tr-sn!DpDMbG1Ew!$a zcYTy$Aqw4@7=pu0J2deJ5FJ4hyK{RF*4Lj8mYbxZsDVlBKF2@HUB!o?6uM>1iR(<# zoR`2eU_m{ihxU)|?w{&UmzI~8_xG(F2P($K#|xi&dX`y;^__o}oSa-&r_^1;-d*3d z4n+KM8SEnYz7A^b&^!`_auqyA_WaI|Og~RS=Kz(VWb_30*sWt07M86DM{~hFpzHJ? zlWKkZQaa!YXRN*zM#zB=m>EZ)QPLwyS@VW?d3q+b+P&KWhYLLE3HpQ@$(BDN0U7@q zYRUhC-2F4;`E#W#GvJ?QGhm<V1j`XV=6~SkeV# zI^(+&E$a^}0pKUu_9t{I5T@<0vy?OC7LTh)Q zRPxi$v>kdmmf-LkGOj&rf1q@-Wh^cuBLj|0Yu&jLi-1|l&>fLgTka+yZVb_Epo28k ziBbS4_B*I~%FK**Lc+Ia=qZ5dc;%?Uyi;*yw)y#Y=za<&SnSkXdw0V2DlogIJy;N# zE&(wAd|zl&K*aOAv|7}uCLLqn8;7qC;`CW3~vwu8tny^|v!4^v7g5BCwQs+|*|V_^&8R6XEUc)gNS1Bn8<56L`eR$; z2@bW)>4^RWH^&}mVDrUy4(7L2v#hFqrc1lb0$orb1+2^pV(vZiV`!97(FB&&A%?yI z5b}aQ!Iwq4Yky6Q`@A?5EB5ltGv9J2@%iIX_8XQNv1EYDf9+y(AwCOj`(P{s)jX+?l*%h9 zU1yhK`^W0J`%0%9^m}%#nGLQE27d&6<6S|8J6ofet3KwrSA%pPi`;eu?8V>Z$IJjG z*GLc88|>D($fHZ(Pwo#>w3fHuu>E1OPZGj@9-u8EUuV7gg=P_R-z^-dXvSq+(%qJ_ z`Xf@AcwYt2Ao-RS+Q4S*B*b?OX~<6SyuCS4D2Y9(DS6SbIsG}}Mt?0SHmPTQochF? zhc~c!hVxjkZXBb}_gqf?agffCmg@=KaDs!EZkF^+JMZNvf&;~AJ=Gye@rK0KD-{Zw z(e*n|>-J^)BlgkzEbN*@slbih_qTuVcU);COI-yxW7N&#bCpO@8(ii5^#{g{th15u zIT2C_o!d;`pm{sA6-{tBjAc43n}+1@&9pTVJ*9kj3M1g{~EWpMX&QHh1#Q`BhGqp1O z1<&K~;)}6$f^xmLoX*oy(E2?SeJxs!C(}y>BL9`A-5STKxb0HP5BYg3vxnB-S2nZo+}Cy0TwjV1cem z-hNPmcNP|F{?IVCU}$K_Rr6hEh5bbUa3!D!=ikKm-n*G1Srf)T5Ucbj*Tzh_l+e8{rY>*WoOk=fw0zRV9^3=`nz&$y$cFM52ScF|AVo4mx#f`9+1T3+BF(D<;)R$WA1c3Kkae8_!}jRY^0E-; zF#oTeT>Q z8>Uj_E*8`An&W7ox%q*~0O`A4q|2K?*)0EN?^!r%dWsjRb0Hd^-)bcGY48@e$t5It zyA3~et_(Q?o+GC3JSOjbcf2S$-~VmEy?0Vp;_Iwtyk#LKZohmh-(}RQP_j5bF7>IK zw5Cp7i+D)c-kq4s3S5CtAXt@tN1cXqbAhHVqg7-G)b3HkwWG-Byr75TYExT}JF%M3 zS9}*l2jv`Rz>c}R1rj{(aTn{G1(0fGZ-{I%` z&ig9xVuv;1Nbl-Zy-31mij1De__lg`r}0{MVAPPhXscC^vb1h)LzV@=S$Lv$TuXB; zSXB4@S9fw;7q&JDA&64IHAKEH8ZI?jwvLkxP~(u4v&*GwYMX2Xyx=46f10hUl~=#> z;c+Wq?L>9g&}A35ek}E7Q&)Ksks|c*u)wUH-dpu*5%Hee zOViI;Nr;n(ebbAp*geqqx~eE$;)q!Svt7d4Tv=*~_EOG;)UiX3ts-9qE*7g&&t{5W zr+*y%lMi;v6`w@LsZ+BjC3(xfz$?t}y>6=;DuJUEk^0N2`*CIiod!pd*Qf^XsC|^j zotQAh<fB0*b)uOZGMq?Qv5Sp6|)WRSqeE7 zqtAllspk#3J@5$M>K*7t{Zc4|Di`h~vuF46H6UKm?@sCE)Bk=4M z#rG*n!g#k4NJ)uP%>PjQio5hDNfn0AgKG)9Lygoe6(Fsh1O88U#k_q3NNYn4L-rSs aY4GKT87*(h|NK=Dq_1;RyI9jc?0*56mY+%h From e56a614e82181eda49724ee282661d52d122e2a3 Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Wed, 7 Dec 2016 11:41:57 -0800 Subject: [PATCH 17/23] add note --- devices/surface-hub/connect-and-display-with-surface-hub.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/devices/surface-hub/connect-and-display-with-surface-hub.md b/devices/surface-hub/connect-and-display-with-surface-hub.md index 7ea1888105..895bb29632 100644 --- a/devices/surface-hub/connect-and-display-with-surface-hub.md +++ b/devices/surface-hub/connect-and-display-with-surface-hub.md @@ -477,4 +477,7 @@ You can connect the following accessories to Surface Hub using Bluetooth: - Mice - Keyboards - Headsets -- Speakers \ No newline at end of file +- Speakers + +>[!NOTE] +>After you connect a Bluetooth headset or speaker, you might need to change the [default microphone and speaker settings](local-management-surface-hub-settings.md). \ No newline at end of file From 11925e13396e9b2df85a35535d154a3e89b7e085 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 7 Dec 2016 11:45:40 -0800 Subject: [PATCH 18/23] update name --- ...us-windows-defender-defender-advanced-threat-protection.md | 4 +++- windows/keep-secure/TOC.md | 2 +- 2 files changed, 4 insertions(+), 2 deletions(-) diff --git a/service-status-windows-defender-defender-advanced-threat-protection.md b/service-status-windows-defender-defender-advanced-threat-protection.md index 67ff6607bc..e9452c920b 100644 --- a/service-status-windows-defender-defender-advanced-threat-protection.md +++ b/service-status-windows-defender-defender-advanced-threat-protection.md @@ -42,8 +42,10 @@ The **Current issues** tab shows the current state of the Windows Defender ATP s - Next steps - Expected resolution time +When an issue is resolved, it gets recorded in the **Status history** tab. + ## Status history -When an issue is resolved, it gets recorded in the **Status history** tab. The **Status history** tab reflects all the historical issues that were seen and resolved. The following service details are shown to help you gain better insight about the historical issues: +The **Status history** tab reflects all the historical issues that were seen and resolved. The following service details are shown to help you gain better insight about the historical issues: - Date and time for when the issue was detected - Preliminary root cause diff --git a/windows/keep-secure/TOC.md b/windows/keep-secure/TOC.md index 4fae3b3944..302f6f1a43 100644 --- a/windows/keep-secure/TOC.md +++ b/windows/keep-secure/TOC.md @@ -740,7 +740,7 @@ ##### [Investigate a domain](investigate-domain-windows-defender-advanced-threat-protection.md) ##### [Manage alerts](manage-alerts-windows-defender-advanced-threat-protection.md) #### [Windows Defender ATP settings](settings-windows-defender-advanced-threat-protection.md) -#### [Windows Defender service status](service-status-windows-defender-defender-advanced-threat-protection.md) +#### [Windows Defender ATP service status](service-status-windows-defender-advanced-threat-protection.md) #### [Configure SIEM tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) ##### [Configure an Azure Active Directory application for SIEM integration](configure-aad-windows-defender-advanced-threat-protection.md) ##### [Configure Splunk to consume Windows Defender ATP alerts](configure-splunk-windows-defender-advanced-threat-protection.md) From c54fa4f73a6f09200427414ce58eb24407b5d04a Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 7 Dec 2016 11:48:54 -0800 Subject: [PATCH 19/23] move file --- .../service-status-windows-defender-advanced-threat-protection.md | 0 1 file changed, 0 insertions(+), 0 deletions(-) rename service-status-windows-defender-defender-advanced-threat-protection.md => windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md (100%) diff --git a/service-status-windows-defender-defender-advanced-threat-protection.md b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md similarity index 100% rename from service-status-windows-defender-defender-advanced-threat-protection.md rename to windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md From def6109dcf4e59797bd2e140db52b08ffc125a5a Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 7 Dec 2016 12:11:13 -0800 Subject: [PATCH 20/23] fix metadata --- ...service-status-windows-defender-advanced-threat-protection.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md index e9452c920b..1ace0eef50 100644 --- a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md @@ -1,3 +1,4 @@ +--- title: Check the Windows Defender ATP service status description: Check Windows Defender ATP service status, see if the service is experiencing issues and review previous issues that have been resolved. keywords: dashboard, service, issues, service status, current issues, status history, summary of impact, preliminary root cause, resolution, resolution time, expected resolution time From 0d7c9fa94be2de215de0d3c1de382c95f778308a Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 7 Dec 2016 12:18:42 -0800 Subject: [PATCH 21/23] fix link --- .../dashboard-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md index bf76aa1170..990e0ac396 100644 --- a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md @@ -60,7 +60,7 @@ The **Status** tile informs you if the service is active or if there are issues ![The Status tile shows an overall indicator of the service and the total number of machines reporting to the service](images/status-tile.png) -For more information on the service status, see [Check the Windows Defender ATP service status](service-status-windows-defender-defender-advanced-threat-protection.md). +For more information on the service status, see [Check the Windows Defender ATP service status](service-status-windows-defender-advanced-threat-protection.md). ## Machines reporting The **Machines reporting** tile shows a bar graph that represents the number of machines reporting alerts daily. Hover over individual bars on the graph to see the exact number of machines reporting in each day. From bd1287d832a4b846c8c531f7e895d67e799d5185 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 7 Dec 2016 13:04:08 -0800 Subject: [PATCH 22/23] feedback from sme --- ...s-windows-defender-advanced-threat-protection.md | 13 +++++-------- 1 file changed, 5 insertions(+), 8 deletions(-) diff --git a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md index 1ace0eef50..9242e7d638 100644 --- a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md @@ -21,7 +21,7 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -The **Service health** provides information on the current status of the Window Defender ATP service. You'll be able to verify that the service status is healthy or if there are current issues and the details related to the issue such as when the issue was detected, what the preliminary root cause is, and the expected resolution time. +The **Service health** provides information on the current status of the Window Defender ATP service. You'll be able to verify that the service status is healthy or if there are current issues. If there are issues, you'll see details related to the issue such as when the issue was detected, what the preliminary root cause is, and the expected resolution time. You'll also see information on historical issues that have been resolved and details such as the date and time when the issue was resolved. When there are no issues on the service, you'll see a healthy status. @@ -33,7 +33,7 @@ The **Service health** details page has the following tabs: - **Status History** ## Current issues -The **Current issues** tab shows the current state of the Windows Defender ATP service. When the service is running smoothly a healthy service status is shown. If there are issues seen on telemetry or detection functionality, and the **Deep analysis** feature, the following service details are shown to help you gain better insight about the issue: +The **Current issues** tab shows the current state of the Windows Defender ATP service. When the service is running smoothly a healthy service status is shown. If there are issues seen, the following service details are shown to help you gain better insight about the issue: - Date and time for when the issue was detected - A short description of the issue @@ -43,15 +43,12 @@ The **Current issues** tab shows the current state of the Windows Defender ATP s - Next steps - Expected resolution time +The status is constantly updated to reflect the ongoing status of an issue such as updates on estimated resolution times or what the next steps might be. + When an issue is resolved, it gets recorded in the **Status history** tab. ## Status history -The **Status history** tab reflects all the historical issues that were seen and resolved. The following service details are shown to help you gain better insight about the historical issues: - -- Date and time for when the issue was detected -- Preliminary root cause -- Next steps -- Resolution time +The **Status history** tab reflects all the historical issues that were seen and resolved. You'll see details of the resolved issues along with the other information that were included while it was being resolved. ### Related topic - [View the Windows Defender Advanced Threat Protection Dashboard](dashboard-windows-defender-advanced-threat-protection.md) From ca92302dd38dc18a68a78353e4945a57ac9dfed3 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Wed, 7 Dec 2016 17:16:57 -0800 Subject: [PATCH 23/23] modify updates on status --- ...ervice-status-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md index 9242e7d638..6c8623a564 100644 --- a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md @@ -43,7 +43,7 @@ The **Current issues** tab shows the current state of the Windows Defender ATP s - Next steps - Expected resolution time -The status is constantly updated to reflect the ongoing status of an issue such as updates on estimated resolution times or what the next steps might be. +Updates on the progress of an issue is reflected on the page as the issue gets resolved. You'll see updates on information such as an updated estimate resolution time or next steps. When an issue is resolved, it gets recorded in the **Status history** tab.