mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-19 16:57:23 +00:00
profile steps
This commit is contained in:
parent
0ccf60902d
commit
ba79edc38f
Binary file not shown.
After Width: | Height: | Size: 76 KiB |
Binary file not shown.
After Width: | Height: | Size: 203 KiB |
Binary file not shown.
After Width: | Height: | Size: 193 KiB |
Binary file not shown.
After Width: | Height: | Size: 85 KiB |
@ -212,4 +212,47 @@ Save it as `AutoEnable_notifications_for_MDATP_AutoUpdate.mobileconfig` or `MDAT
|
|||||||
`com.microsoft.autoupdate2.plist: OK`
|
`com.microsoft.autoupdate2.plist: OK`
|
||||||
|
|
||||||
13. Grant full disk access to Microsoft Defender ATP.
|
13. Grant full disk access to Microsoft Defender ATP.
|
||||||
|
|
||||||
|
Privacy Preferences Policy Control (TCC, Full Disk Access for macOS 10.15 (Catalina) and newer).
|
||||||
|
|
||||||
|
For more information, see [Privacy preferences policy control](mac-install-with-jamf.md#privacy-preferences-policy-control).
|
||||||
|
|
||||||
|
a. Select **Options > Privacy Preferences Policy Control**.
|
||||||
|
b. Use any identifier and identifier type = Bundle.
|
||||||
|
c. Set Code Requirement to identifier 'com.microsoft.wdav' and `anchor apple generic and certificate 1[field.1.2.840.113635.100.6.2.6] /* exists */ and certificate leaf[field.1.2.840.113635.100.6.1.13] /* exists */ and certificate leaf[subject.OU] = UBF8T346G9`.
|
||||||
|
d. Set app or service to `SystemPolicyAllFiles` and access to `Allow`.
|
||||||
|
|
||||||
|
14. Approve Kernel Extension for Microsoft Defender ATP.
|
||||||
|
|
||||||
|
a. In **Computers > Configuration Profiles select Options > Approved Kernel Extensions**.
|
||||||
|
b. Use **UBF8T346G9** for **Team Id**.
|
||||||
|
|
||||||
|
|
||||||
|
## Onboard the package
|
||||||
|
|
||||||
|
1. Locate the file `WindowsDefenderATPOnboarding.plist`.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
2. In the JamF Pro dashboard, select **New**.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
3. Enter the following details:
|
||||||
|
|
||||||
|
**General**
|
||||||
|
- Name: MDATP onboarding for macOS
|
||||||
|
- Description: MDATP EDR onboarding for macOS
|
||||||
|
- Category: None
|
||||||
|
- Distribution Method: Install Automatically
|
||||||
|
- Level: Computer Level
|
||||||
|
|
||||||
|
**General**
|
||||||
|
- Select **Application & Custom Settings**
|
||||||
|
- Select **Configure**.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
4. Select **Upload File (PLIST file)**.
|
||||||
|
|
||||||
|

|
||||||
|
Loading…
x
Reference in New Issue
Block a user