mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-18 16:27:22 +00:00
Update attack-surface-reduction-faq.md
This commit is contained in:
parent
6c829c9ceb
commit
9fc3dd7d7d
@ -27,7 +27,7 @@ ms.custom: asr
|
|||||||
|
|
||||||
## Is attack surface reduction (ASR) part of Windows?
|
## Is attack surface reduction (ASR) part of Windows?
|
||||||
|
|
||||||
ASR was originally a feature of the suite of exploit guard features introduced as a major update to Microsoft Defender Antivirus, in Windows 10 version 1709. Microsoft Defender Antivirus is the native antimalware component of Windows. However, the full ASR feature-set is only available with a Windows enterprise license. Also note that ASR rule exclusions are managed separately from Microsoft Defender Antivirus exclusions.
|
ASR was originally a feature of the suite of exploit guard features introduced as a major update to Microsoft Defender Antivirus, in Windows 10, version 1709. Microsoft Defender Antivirus is the native antimalware component of Windows. However, the full ASR feature-set is only available with a Windows enterprise license. Also note that ASR rule exclusions are managed separately from Microsoft Defender Antivirus exclusions.
|
||||||
|
|
||||||
## Do I need to have an enterprise license to run ASR rules?
|
## Do I need to have an enterprise license to run ASR rules?
|
||||||
|
|
||||||
@ -127,7 +127,7 @@ Because many legitimate processes throughout a typical day will be calling on ls
|
|||||||
|
|
||||||
Enabling this rule will not provide additional protection if you have [LSA protection](https://docs.microsoft.com/windows-server/security/credentials-protection-and-management/configuring-additional-lsa-protection#BKMK_HowToConfigure) enabled as well. Both the rule and LSA protection work in much the same way, so having both running at the same time would be redundant. However, sometimes you may not be able to enable LSA protection. In those cases, you can enable this rule to provide equivalent protection against malware that target lsass.exe.
|
Enabling this rule will not provide additional protection if you have [LSA protection](https://docs.microsoft.com/windows-server/security/credentials-protection-and-management/configuring-additional-lsa-protection#BKMK_HowToConfigure) enabled as well. Both the rule and LSA protection work in much the same way, so having both running at the same time would be redundant. However, sometimes you may not be able to enable LSA protection. In those cases, you can enable this rule to provide equivalent protection against malware that target lsass.exe.
|
||||||
|
|
||||||
## Related topics
|
## See also
|
||||||
|
|
||||||
* [Attack surface reduction overview](attack-surface-reduction.md)
|
* [Attack surface reduction overview](attack-surface-reduction.md)
|
||||||
* [Evaluate attack surface reduction rules](evaluate-attack-surface-reduction.md)
|
* [Evaluate attack surface reduction rules](evaluate-attack-surface-reduction.md)
|
||||||
|
Loading…
x
Reference in New Issue
Block a user