From 97fbfeebc5d32dc72007b4975838ee29d30944a2 Mon Sep 17 00:00:00 2001 From: Bill Mcilhargey <19168174+computeronix@users.noreply.github.com> Date: Thu, 25 Feb 2021 12:14:54 -0500 Subject: [PATCH 1/7] ESU callout for Win 7 Windows 7 requires SCEP or relies upon SCEP, in order for SCEP to be in a supported state, it would require a customer to purchase and use ESU on a support Windows 7 device Called that out, technically Windows 7 is not listed as a supported OS in SCCM/SCEP any longer - https://docs.microsoft.com/en-us/mem/configmgr/core/plan-design/configs/supported-operating-systems-for-clients-and-devices --- .../microsoft-defender-atp/minimum-requirements.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md index 13cbda189c..bc5cc86308 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md +++ b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md @@ -85,8 +85,8 @@ Access to Defender for Endpoint is done through a browser, supporting the follow ## Hardware and software requirements ### Supported Windows versions -- Windows 7 SP1 Enterprise -- Windows 7 SP1 Pro +- Windows 7 SP1 Enterprise [requires ESU for support](https://docs.microsoft.com/troubleshoot/windows-client/windows-7-eos-faq/windows-7-extended-security-updates-faq) +- Windows 7 SP1 Pro [requires ESU for support](https://docs.microsoft.com/troubleshoot/windows-client/windows-7-eos-faq/windows-7-extended-security-updates-faq) - Windows 8.1 Enterprise - Windows 8.1 Pro - Windows 10 Enterprise From e9dffdb31bf24f9b44257aafe51af6ffcb6284f5 Mon Sep 17 00:00:00 2001 From: Wahid S Date: Thu, 25 Feb 2021 11:43:55 -0600 Subject: [PATCH 2/7] Update onboard-configure with server versions Added the Windows Server versions that are now supported. The list was taken from the linked article. --- .../microsoft-defender-atp/onboard-configure.md | 6 +----- 1 file changed, 1 insertion(+), 5 deletions(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md b/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md index 707d4681f7..309fb1f9df 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md +++ b/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md @@ -60,14 +60,10 @@ Topic | Description :---|:--- [Onboard previous versions of Windows](onboard-downlevel.md)| Onboard Windows 7 and Windows 8.1 devices to Defender for Endpoint. [Onboard Windows 10 devices](configure-endpoints.md) | You'll need to onboard devices for it to report to the Defender for Endpoint service. Learn about the tools and methods you can use to configure devices in your enterprise. -[Onboard servers](configure-server-endpoints.md) | Onboard Windows Server 2012 R2 and Windows Server 2016 to Defender for Endpoint +[Onboard servers](configure-server-endpoints.md) | Onboard Windows Server 2008 R2 SP1, Windows Server 2012 R2, Windows Server 2016, Windows Server (SAC) version 1803 and later, Windows Server 2019 and later, and Windows Server 2019 core edition to Defender for Endpoint [Onboard non-Windows devices](configure-endpoints-non-windows.md) | Defender for Endpoint provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in Microsoft Defender Security Center and better protect your organization's network. This experience leverages on a third-party security products' sensor data. [Run a detection test on a newly onboarded device](run-detection-test.md) | Run a script on a newly onboarded device to verify that it is properly reporting to the Defender for Endpoint service. [Configure proxy and Internet settings](configure-proxy-internet.md)| Enable communication with the Defender for Endpoint cloud service by configuring the proxy and Internet connectivity settings. [Troubleshoot onboarding issues](troubleshoot-onboarding.md) | Learn about resolving issues that might arise during onboarding. >Want to experience Defender for Endpoint? [Sign up for a free trial.](https://www.microsoft.com/microsoft-365/windows/microsoft-defender-atp?ocid=docs-wdatp-onboardconfigure-belowfoldlink) - - - - From ac01623bd82b1c2d3bbceeb64b3e07d0937d6ce8 Mon Sep 17 00:00:00 2001 From: Wahid S Date: Mon, 1 Mar 2021 16:28:48 +0000 Subject: [PATCH 3/7] Update windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md Added a period to end of sentence. Co-authored-by: Trond B. Krokli <38162891+illfated@users.noreply.github.com> --- .../microsoft-defender-atp/onboard-configure.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md b/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md index 309fb1f9df..535d4dc455 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md +++ b/windows/security/threat-protection/microsoft-defender-atp/onboard-configure.md @@ -60,7 +60,7 @@ Topic | Description :---|:--- [Onboard previous versions of Windows](onboard-downlevel.md)| Onboard Windows 7 and Windows 8.1 devices to Defender for Endpoint. [Onboard Windows 10 devices](configure-endpoints.md) | You'll need to onboard devices for it to report to the Defender for Endpoint service. Learn about the tools and methods you can use to configure devices in your enterprise. -[Onboard servers](configure-server-endpoints.md) | Onboard Windows Server 2008 R2 SP1, Windows Server 2012 R2, Windows Server 2016, Windows Server (SAC) version 1803 and later, Windows Server 2019 and later, and Windows Server 2019 core edition to Defender for Endpoint +[Onboard servers](configure-server-endpoints.md) | Onboard Windows Server 2008 R2 SP1, Windows Server 2012 R2, Windows Server 2016, Windows Server (SAC) version 1803 and later, Windows Server 2019 and later, and Windows Server 2019 core edition to Defender for Endpoint. [Onboard non-Windows devices](configure-endpoints-non-windows.md) | Defender for Endpoint provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in Microsoft Defender Security Center and better protect your organization's network. This experience leverages on a third-party security products' sensor data. [Run a detection test on a newly onboarded device](run-detection-test.md) | Run a script on a newly onboarded device to verify that it is properly reporting to the Defender for Endpoint service. [Configure proxy and Internet settings](configure-proxy-internet.md)| Enable communication with the Defender for Endpoint cloud service by configuring the proxy and Internet connectivity settings. From 6af6b1b964cd0c99f9754f1b2491d4771b0e37db Mon Sep 17 00:00:00 2001 From: Wahid S Date: Tue, 2 Mar 2021 21:15:10 -0600 Subject: [PATCH 4/7] Adding a link to instructions to configure SCEP Adding a link to instructions to configure SCEP client, which took me forever to find some hopefully will save others some time. --- .../microsoft-defender-atp/configure-server-endpoints.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/configure-server-endpoints.md b/windows/security/threat-protection/microsoft-defender-atp/configure-server-endpoints.md index d9643ad099..938ef7a28a 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/configure-server-endpoints.md +++ b/windows/security/threat-protection/microsoft-defender-atp/configure-server-endpoints.md @@ -221,7 +221,7 @@ Defender for Endpoint integrates with System Center Endpoint Protection. The int The following steps are required to enable this integration: - Install the [January 2017 anti-malware platform update for Endpoint Protection clients](https://support.microsoft.com/help/3209361/january-2017-anti-malware-platform-update-for-endpoint-protection-clie). -- Configure the SCEP client Cloud Protection Service membership to the **Advanced** setting. +- [Configure the SCEP client Cloud Protection Service membership](https://docs.microsoft.com/windows/security/threat-protection/microsoft-defender-antivirus/enable-cloud-protection-microsoft-defender-antivirus) to the **Advanced** setting.
From fea6ffd23a3f6ffcdab4addc163223cb0adc892a Mon Sep 17 00:00:00 2001 From: Bill Mcilhargey <19168174+computeronix@users.noreply.github.com> Date: Wed, 3 Mar 2021 09:27:03 -0500 Subject: [PATCH 5/7] Update windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md Co-authored-by: Trond B. Krokli <38162891+illfated@users.noreply.github.com> --- .../microsoft-defender-atp/minimum-requirements.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md index bc5cc86308..a5ff2e08a5 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md +++ b/windows/security/threat-protection/microsoft-defender-atp/minimum-requirements.md @@ -85,8 +85,8 @@ Access to Defender for Endpoint is done through a browser, supporting the follow ## Hardware and software requirements ### Supported Windows versions -- Windows 7 SP1 Enterprise [requires ESU for support](https://docs.microsoft.com/troubleshoot/windows-client/windows-7-eos-faq/windows-7-extended-security-updates-faq) -- Windows 7 SP1 Pro [requires ESU for support](https://docs.microsoft.com/troubleshoot/windows-client/windows-7-eos-faq/windows-7-extended-security-updates-faq) +- Windows 7 SP1 Enterprise ([Requires ESU for support](https://docs.microsoft.com/troubleshoot/windows-client/windows-7-eos-faq/windows-7-extended-security-updates-faq).) +- Windows 7 SP1 Pro ([Requires ESU for support](https://docs.microsoft.com/troubleshoot/windows-client/windows-7-eos-faq/windows-7-extended-security-updates-faq).) - Windows 8.1 Enterprise - Windows 8.1 Pro - Windows 10 Enterprise From 28d8782a9c281f8871dbc30183606ee84bc3043b Mon Sep 17 00:00:00 2001 From: VLG17 <41186174+VLG17@users.noreply.github.com> Date: Thu, 4 Mar 2021 17:19:57 +0200 Subject: [PATCH 6/7] update link https://github.com/MicrosoftDocs/windows-itpro-docs/issues/9109 --- .../threat-protection/microsoft-defender-atp/machine-groups.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md b/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md index c6140eeab7..08467f6ec7 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md +++ b/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md @@ -90,4 +90,4 @@ Devices that are not matched to any groups are added to Ungrouped devices (defau - [Manage portal access using role-based based access control](rbac.md) - [Create and manage device tags](machine-tags.md) -- [Get list of tenant device groups using Graph API](get-machinegroups-collection.md) +- [Get list of tenant device groups using Graph API](https://docs.microsoft.com/en-us/graph/api/device-list-memberof?view=graph-rest-1.0&tabs=http) From 9cf77a724d30823cea0ef356eeb3b92a6fc402ad Mon Sep 17 00:00:00 2001 From: VLG17 <41186174+VLG17@users.noreply.github.com> Date: Fri, 5 Mar 2021 08:50:43 +0200 Subject: [PATCH 7/7] upate shortened link --- .../threat-protection/microsoft-defender-atp/machine-groups.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md b/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md index 08467f6ec7..1370c628f9 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md +++ b/windows/security/threat-protection/microsoft-defender-atp/machine-groups.md @@ -90,4 +90,4 @@ Devices that are not matched to any groups are added to Ungrouped devices (defau - [Manage portal access using role-based based access control](rbac.md) - [Create and manage device tags](machine-tags.md) -- [Get list of tenant device groups using Graph API](https://docs.microsoft.com/en-us/graph/api/device-list-memberof?view=graph-rest-1.0&tabs=http) +- [Get list of tenant device groups using Graph API](https://docs.microsoft.com/graph/api/device-list-memberof)