From 1858c844aab05d925453104f86058282244e39b0 Mon Sep 17 00:00:00 2001 From: adirdidi <68847945+adirdidi@users.noreply.github.com> Date: Fri, 15 Jan 2021 01:22:14 +0200 Subject: [PATCH 1/4] Update minimum-requirements.md Add MDE standalone license to the list of licenses. --- .../microsoft-defender-atp/minimum-requirements.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md index 7e1c5f470f..70807007bb 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md +++ b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md @@ -1,5 +1,5 @@ --- -title: Minimum requirements for Microsoft Defender ATP +title: Minimum requirements for Microsoft Defender for Endpoint description: Understand the licensing requirements and requirements for onboarding devices to the service keywords: minimum requirements, licensing, comparison table search.product: eADQiWindows 10XVcnh @@ -42,6 +42,7 @@ Microsoft Defender for Endpoint requires one of the following Microsoft volume l - Microsoft 365 A5 (M365 A5) - Microsoft 365 E5 Security - Microsoft 365 A5 Security +- Microsoft Defender for Endpoint > [!NOTE] > Eligible licensed users may use Microsoft Defender for Endpoint on up to five concurrent devices. From 6ac48d71c14e1fcb5fe7ba5a3e704915bf0ca669 Mon Sep 17 00:00:00 2001 From: adirdidi <68847945+adirdidi@users.noreply.github.com> Date: Fri, 15 Jan 2021 01:28:10 +0200 Subject: [PATCH 2/4] Update minimum-requirements.md --- .../microsoft-defender-atp/minimum-requirements.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md index 70807007bb..be00d43191 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md +++ b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md @@ -48,10 +48,10 @@ Microsoft Defender for Endpoint requires one of the following Microsoft volume l > Eligible licensed users may use Microsoft Defender for Endpoint on up to five concurrent devices. > Microsoft Defender for Endpoint is also available for purchase from a Cloud Solution Provider (CSP). -Microsoft Defender for Endpoint, on Windows Server, requires one of the following licensing options: +Microsoft Defender for Endpoint for servers requires one of the following licensing options: - [Azure Security Center with Azure Defender enabled](https://docs.microsoft.com/azure/security-center/security-center-pricing) -- Defender for Endpoint for Servers (one per covered server) +- Microsoft Defender for Endpoint for Server (one per covered server) > [!NOTE] > Customers may acquire server licenses (one per covered server Operating System Environment (OSE)) for Microsoft Defender for Endpoint for Servers if they have a combined minimum of 50 licenses for one or more of the following user licenses: From 4b695dfb590acfbfd2287dccf3e0afbcd5d1229e Mon Sep 17 00:00:00 2001 From: adirdidi <68847945+adirdidi@users.noreply.github.com> Date: Fri, 15 Jan 2021 01:34:49 +0200 Subject: [PATCH 3/4] Update gov.md Add SIEM API endpoint. Also referenced in here: https://github.com/MicrosoftDocs/windows-itpro-docs/issues/8311 --- .../threat-protection/microsoft-defender-atp/gov.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/gov.md b/windows/security/threat-protection/microsoft-defender-atp/gov.md index 85e190979f..eeacc23eda 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/gov.md +++ b/windows/security/threat-protection/microsoft-defender-atp/gov.md @@ -91,10 +91,10 @@ Defender for Endpoint GCC High specific | `winatp-gw-usgt.microsoft.com`
`win ## API Instead of the public URIs listed in our [API documentation](https://docs.microsoft.com/windows/security/threat-protection/microsoft-defender-atp/apis-intro), you'll need to use the following URIs: -Environment | Login endpoint | Defender for Endpoint API endpoint +Environment | Login endpoint | Defender for Endpoint API endpoint | SIEM API endpoint :---|:---|:--- -GCC | `https://login.microsoftonline.com` | `https://api-gcc.securitycenter.microsoft.us` -GCC High | `https://login.microsoftonline.us` | `https://api-gov.securitycenter.microsoft.us` +GCC | `https://login.microsoftonline.com` | `https://api-gcc.securitycenter.microsoft.us` | Rolling out +GCC High | `https://login.microsoftonline.us` | `https://api-gov.securitycenter.microsoft.us` | `https://wdatp-alertexporter-us.securitycenter.windows.us`
From 4429cf13dfd6777a5898042c3d03455da2d0df08 Mon Sep 17 00:00:00 2001 From: adirdidi <68847945+adirdidi@users.noreply.github.com> Date: Fri, 15 Jan 2021 01:43:20 +0200 Subject: [PATCH 4/4] Update gov.md --- .../threat-protection/microsoft-defender-atp/gov.md | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/gov.md b/windows/security/threat-protection/microsoft-defender-atp/gov.md index eeacc23eda..c7bc773f92 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/gov.md +++ b/windows/security/threat-protection/microsoft-defender-atp/gov.md @@ -91,10 +91,11 @@ Defender for Endpoint GCC High specific | `winatp-gw-usgt.microsoft.com`
`win ## API Instead of the public URIs listed in our [API documentation](https://docs.microsoft.com/windows/security/threat-protection/microsoft-defender-atp/apis-intro), you'll need to use the following URIs: -Environment | Login endpoint | Defender for Endpoint API endpoint | SIEM API endpoint +Endpoint type | GCC | GCC High :---|:---|:--- -GCC | `https://login.microsoftonline.com` | `https://api-gcc.securitycenter.microsoft.us` | Rolling out -GCC High | `https://login.microsoftonline.us` | `https://api-gov.securitycenter.microsoft.us` | `https://wdatp-alertexporter-us.securitycenter.windows.us` +Login | `https://login.microsoftonline.com` | `https://login.microsoftonline.us` +Defender for Endpoint API | `https://api-gcc.securitycenter.microsoft.us` | `https://api-gov.securitycenter.microsoft.us` +SIEM | Rolling out | `https://wdatp-alertexporter-us.securitycenter.windows.us`