mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-14 14:27:22 +00:00
Merge branch 'master' into sccm-windows-sec
This commit is contained in:
commit
c03570c4bb
1
it-client
Submodule
1
it-client
Submodule
@ -0,0 +1 @@
|
|||||||
|
Subproject commit 61e0a21977430f3c0eef1c32e398999dc090c332
|
@ -405,52 +405,21 @@ If you [turn off traffic for this endpoint](manage-connections-from-windows-oper
|
|||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | *.prod.do.dsp.mp.microsoft.com |
|
| svchost | HTTPS | *.prod.do.dsp.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoints are used to download operating system patches and updates.
|
The following endpoints are used to download operating system patches, updates, and apps from Microsoft Store.
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to download updates for the operating system.
|
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to download updates for the operating system.
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
| Source process | Protocol | Destination |
|
||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTP | *.windowsupdate.com |
|
| svchost | HTTP | *.windowsupdate.com |
|
||||||
| | HTTP | fg.download.windowsupdate.com.c.footprint.net |
|
| svchost | HTTP | *.dl.delivery.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoint is used by the Highwinds Content Delivery Network to perform Windows updates.
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not perform updates.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | | cds.d2s7q6s2.hwcdn.net |
|
|
||||||
|
|
||||||
The following endpoints are used by the Verizon Content Delivery Network to perform Windows updates.
|
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not perform updates.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | HTTP | *wac.phicdn.net |
|
|
||||||
| | | *wac.edgecastcdn.net |
|
|
||||||
|
|
||||||
The following endpoint is used to download apps and Windows Insider Preview builds from the Microsoft Store. Time Limited URL (TLU) is a mechanism for protecting the content. For example, it prevents someone from copying the URL and then getting access to the app that the person has not acquired).
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the updating functionality on this device is essentially in a disabled state, resulting in user unable to get apps from the Store, get latest version of Windows, and so on.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| svchost | | *.tlu.dl.delivery.mp.microsoft.com.c.footprint.net |
|
|
||||||
|
|
||||||
The following endpoint is used to download apps from the Microsoft Store. It's used as part of calculating the right ranges for apps.
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), users of the device will not able to get apps from the Microsoft Store.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| svchost | | emdl.ws.microsoft.com |
|
|
||||||
|
|
||||||
The following endpoints enable connections to Windows Update, Microsoft Update, and the online services of the Store.
|
The following endpoints enable connections to Windows Update, Microsoft Update, and the online services of the Store.
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to connect to Windows Update and Microsoft Update to help keep the device secure. Also, the device will not be able to acquire and update apps from the Store.
|
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to connect to Windows Update and Microsoft Update to help keep the device secure. Also, the device will not be able to acquire and update apps from the Store.
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
| Source process | Protocol | Destination |
|
||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | fe2.update.microsoft.com |
|
| svchost | HTTPS | *.update.microsoft.com |
|
||||||
| svchost | | fe3.delivery.mp.microsoft.com |
|
| svchost | HTTPS | *.delivery.mp.microsoft.com |
|
||||||
| | | fe3.delivery.dsp.mp.microsoft.com.nsatc.net |
|
|
||||||
| svchost | HTTPS | sls.update.microsoft.com |
|
|
||||||
|
|
||||||
The following endpoint is used for content regulation.
|
The following endpoint is used for content regulation.
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the Windows Update Agent will be unable to contact the endpoint and fallback behavior will be used. This may result in content being either incorrectly downloaded or not downloaded at all.
|
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the Windows Update Agent will be unable to contact the endpoint and fallback behavior will be used. This may result in content being either incorrectly downloaded or not downloaded at all.
|
||||||
@ -459,14 +428,6 @@ If you [turn off traffic for this endpoint](manage-connections-from-windows-oper
|
|||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | tsfe.trafficshaping.dsp.mp.microsoft.com |
|
| svchost | HTTPS | tsfe.trafficshaping.dsp.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoints are used to download content.
|
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), you will block any content from being downloaded.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | | a122.dscd.akamai.net |
|
|
||||||
| | | a1621.g.akamai.net |
|
|
||||||
|
|
||||||
## Microsoft forward link redirection service (FWLink)
|
## Microsoft forward link redirection service (FWLink)
|
||||||
|
|
||||||
The following endpoint is used by the Microsoft forward link redirection service (FWLink) to redirect permanent web links to their actual, sometimes transitory, URL. FWlinks are similar to URL shorteners, just longer.
|
The following endpoint is used by the Microsoft forward link redirection service (FWLink) to redirect permanent web links to their actual, sometimes transitory, URL. FWlinks are similar to URL shorteners, just longer.
|
||||||
@ -490,4 +451,4 @@ To view endpoints for non-Enterprise Windows 10 editions, see:
|
|||||||
## Related links
|
## Related links
|
||||||
|
|
||||||
- [Office 365 URLs and IP address ranges](https://support.office.com/en-us/article/Office-365-URLs-and-IP-address-ranges-8548a211-3fe7-47cb-abb1-355ea5aa88a2?ui=en-US&rs=en-US&ad=US)
|
- [Office 365 URLs and IP address ranges](https://support.office.com/en-us/article/Office-365-URLs-and-IP-address-ranges-8548a211-3fe7-47cb-abb1-355ea5aa88a2?ui=en-US&rs=en-US&ad=US)
|
||||||
- [Network infrastructure requirements for Microsoft Intune](https://docs.microsoft.com/intune/get-started/network-infrastructure-requirements-for-microsoft-intune)
|
- [Network infrastructure requirements for Microsoft Intune](https://docs.microsoft.com/intune/get-started/network-infrastructure-requirements-for-microsoft-intune)
|
||||||
|
@ -410,53 +410,21 @@ If you [turn off traffic for this endpoint](manage-connections-from-windows-oper
|
|||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | *.prod.do.dsp.mp.microsoft.com |
|
| svchost | HTTPS | *.prod.do.dsp.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoints are used to download operating system patches and updates.
|
The following endpoints are used to download operating system patches, updates, and apps from Microsoft Store.
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to download updates for the operating system.
|
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to download updates for the operating system.
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
| Source process | Protocol | Destination |
|
||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTP | *.windowsupdate.com |
|
| svchost | HTTP | *.windowsupdate.com |
|
||||||
| | HTTP | fg.download.windowsupdate.com.c.footprint.net |
|
| svchost | HTTP | *.dl.delivery.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoint is used by the Highwinds Content Delivery Network to perform Windows updates.
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not perform updates.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | | cds.d2s7q6s2.hwcdn.net |
|
|
||||||
|
|
||||||
The following endpoints are used by the Verizon Content Delivery Network to perform Windows updates.
|
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not perform updates.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | HTTP | *wac.phicdn.net |
|
|
||||||
| | | *wac.edgecastcdn.net |
|
|
||||||
|
|
||||||
The following endpoint is used to download apps and Windows Insider Preview builds from the Microsoft Store. Time Limited URL (TLU) is a mechanism for protecting the content. For example, it prevents someone from copying the URL and then getting access to the app that the person has not acquired).
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the updating functionality on this device is essentially in a disabled state, resulting in user unable to get apps from the Store, get latest version of Windows, and so on.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| svchost | | *.tlu.dl.delivery.mp.microsoft.com.c.footprint.net |
|
|
||||||
|
|
||||||
The following endpoint is used to download apps from the Microsoft Store. It's used as part of calculating the right ranges for apps.
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), users of the device will not able to get apps from the Microsoft Store.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| svchost | | emdl.ws.microsoft.com |
|
|
||||||
|
|
||||||
The following endpoints enable connections to Windows Update, Microsoft Update, and the online services of the Store.
|
The following endpoints enable connections to Windows Update, Microsoft Update, and the online services of the Store.
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to connect to Windows Update and Microsoft Update to help keep the device secure. Also, the device will not be able to acquire and update apps from the Store.
|
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to connect to Windows Update and Microsoft Update to help keep the device secure. Also, the device will not be able to acquire and update apps from the Store.
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
| Source process | Protocol | Destination |
|
||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | fe2.update.microsoft.com |
|
| svchost | HTTPS | *.update.microsoft.com |
|
||||||
| svchost | | fe3.delivery.mp.microsoft.com |
|
| svchost | HTTPS | *.delivery.mp.microsoft.com |
|
||||||
| | | fe3.delivery.dsp.mp.microsoft.com.nsatc.net |
|
|
||||||
| svchost | HTTPS | sls.update.microsoft.com |
|
|
||||||
| | HTTP | *.dl.delivery.mp.microsoft.com |
|
|
||||||
|
|
||||||
The following endpoint is used for content regulation.
|
The following endpoint is used for content regulation.
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the Windows Update Agent will be unable to contact the endpoint and fallback behavior will be used. This may result in content being either incorrectly downloaded or not downloaded at all.
|
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the Windows Update Agent will be unable to contact the endpoint and fallback behavior will be used. This may result in content being either incorrectly downloaded or not downloaded at all.
|
||||||
@ -465,14 +433,6 @@ If you [turn off traffic for this endpoint](manage-connections-from-windows-oper
|
|||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | tsfe.trafficshaping.dsp.mp.microsoft.com |
|
| svchost | HTTPS | tsfe.trafficshaping.dsp.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoints are used to download content.
|
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), you will block any content from being downloaded.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | | a122.dscd.akamai.net |
|
|
||||||
| | | a1621.g.akamai.net |
|
|
||||||
|
|
||||||
## Microsoft forward link redirection service (FWLink)
|
## Microsoft forward link redirection service (FWLink)
|
||||||
|
|
||||||
The following endpoint is used by the Microsoft forward link redirection service (FWLink) to redirect permanent web links to their actual, sometimes transitory, URL. FWlinks are similar to URL shorteners, just longer.
|
The following endpoint is used by the Microsoft forward link redirection service (FWLink) to redirect permanent web links to their actual, sometimes transitory, URL. FWlinks are similar to URL shorteners, just longer.
|
||||||
@ -496,4 +456,4 @@ To view endpoints for non-Enterprise Windows 10 editions, see:
|
|||||||
## Related links
|
## Related links
|
||||||
|
|
||||||
- [Office 365 URLs and IP address ranges](https://support.office.com/en-us/article/Office-365-URLs-and-IP-address-ranges-8548a211-3fe7-47cb-abb1-355ea5aa88a2?ui=en-US&rs=en-US&ad=US)
|
- [Office 365 URLs and IP address ranges](https://support.office.com/en-us/article/Office-365-URLs-and-IP-address-ranges-8548a211-3fe7-47cb-abb1-355ea5aa88a2?ui=en-US&rs=en-US&ad=US)
|
||||||
- [Network infrastructure requirements for Microsoft Intune](https://docs.microsoft.com/intune/get-started/network-infrastructure-requirements-for-microsoft-intune)
|
- [Network infrastructure requirements for Microsoft Intune](https://docs.microsoft.com/intune/get-started/network-infrastructure-requirements-for-microsoft-intune)
|
||||||
|
@ -440,53 +440,21 @@ If you [turn off traffic for this endpoint](manage-connections-from-windows-oper
|
|||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | *.prod.do.dsp.mp.microsoft.com |
|
| svchost | HTTPS | *.prod.do.dsp.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoints are used to download operating system patches and updates.
|
The following endpoints are used to download operating system patches, updates, and apps from Microsoft Store.
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to download updates for the operating system.
|
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to download updates for the operating system.
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
| Source process | Protocol | Destination |
|
||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTP | *.windowsupdate.com |
|
| svchost | HTTP | *.windowsupdate.com |
|
||||||
| | HTTP | fg.download.windowsupdate.com.c.footprint.net |
|
| svchost | HTTP | *.dl.delivery.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoint is used by the Highwinds Content Delivery Network to perform Windows updates.
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not perform updates.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | | cds.d2s7q6s2.hwcdn.net |
|
|
||||||
|
|
||||||
The following endpoints are used by the Verizon Content Delivery Network to perform Windows updates.
|
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not perform updates.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | HTTP | *wac.phicdn.net |
|
|
||||||
| | | *wac.edgecastcdn.net |
|
|
||||||
|
|
||||||
The following endpoint is used to download apps and Windows Insider Preview builds from the Microsoft Store. Time Limited URL (TLU) is a mechanism for protecting the content. For example, it prevents someone from copying the URL and then getting access to the app that the person has not acquired).
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the updating functionality on this device is essentially in a disabled state, resulting in user unable to get apps from the Store, get latest version of Windows, and so on.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| svchost | | *.tlu.dl.delivery.mp.microsoft.com.c.footprint.net |
|
|
||||||
|
|
||||||
The following endpoint is used to download apps from the Microsoft Store. It's used as part of calculating the right ranges for apps.
|
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), users of the device will not able to get apps from the Microsoft Store.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| svchost | | emdl.ws.microsoft.com |
|
|
||||||
|
|
||||||
The following endpoints enable connections to Windows Update, Microsoft Update, and the online services of the Store.
|
The following endpoints enable connections to Windows Update, Microsoft Update, and the online services of the Store.
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to connect to Windows Update and Microsoft Update to help keep the device secure. Also, the device will not be able to acquire and update apps from the Store.
|
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the device will not be able to connect to Windows Update and Microsoft Update to help keep the device secure. Also, the device will not be able to acquire and update apps from the Store.
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
| Source process | Protocol | Destination |
|
||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | fe2.update.microsoft.com |
|
| svchost | HTTPS | *.update.microsoft.com |
|
||||||
| svchost | | fe3.delivery.mp.microsoft.com |
|
| svchost | HTTPS | *.delivery.mp.microsoft.com |
|
||||||
| | | fe3.delivery.dsp.mp.microsoft.com.nsatc.net |
|
|
||||||
| svchost | HTTPS | sls.update.microsoft.com |
|
|
||||||
| | HTTP | *.dl.delivery.mp.microsoft.com |
|
|
||||||
|
|
||||||
The following endpoint is used for content regulation.
|
The following endpoint is used for content regulation.
|
||||||
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the Windows Update Agent will be unable to contact the endpoint and fallback behavior will be used. This may result in content being either incorrectly downloaded or not downloaded at all.
|
If you [turn off traffic for this endpoint](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), the Windows Update Agent will be unable to contact the endpoint and fallback behavior will be used. This may result in content being either incorrectly downloaded or not downloaded at all.
|
||||||
@ -495,13 +463,6 @@ If you [turn off traffic for this endpoint](manage-connections-from-windows-oper
|
|||||||
|----------------|----------|------------|
|
|----------------|----------|------------|
|
||||||
| svchost | HTTPS | tsfe.trafficshaping.dsp.mp.microsoft.com |
|
| svchost | HTTPS | tsfe.trafficshaping.dsp.mp.microsoft.com |
|
||||||
|
|
||||||
The following endpoints are used to download content.
|
|
||||||
If you [turn off traffic for these endpoints](manage-connections-from-windows-operating-system-components-to-microsoft-services.md#bkmk-wu), you will block any content from being downloaded.
|
|
||||||
|
|
||||||
| Source process | Protocol | Destination |
|
|
||||||
|----------------|----------|------------|
|
|
||||||
| | | a122.dscd.akamai.net |
|
|
||||||
| | | a1621.g.akamai.net |
|
|
||||||
|
|
||||||
## Microsoft forward link redirection service (FWLink)
|
## Microsoft forward link redirection service (FWLink)
|
||||||
|
|
||||||
@ -528,4 +489,4 @@ To view endpoints for non-Enterprise Windows 10 editions, see:
|
|||||||
## Related links
|
## Related links
|
||||||
|
|
||||||
- [Office 365 URLs and IP address ranges](https://support.office.com/en-us/article/Office-365-URLs-and-IP-address-ranges-8548a211-3fe7-47cb-abb1-355ea5aa88a2?ui=en-US&rs=en-US&ad=US)
|
- [Office 365 URLs and IP address ranges](https://support.office.com/en-us/article/Office-365-URLs-and-IP-address-ranges-8548a211-3fe7-47cb-abb1-355ea5aa88a2?ui=en-US&rs=en-US&ad=US)
|
||||||
- [Network infrastructure requirements for Microsoft Intune](https://docs.microsoft.com/intune/get-started/network-infrastructure-requirements-for-microsoft-intune)
|
- [Network infrastructure requirements for Microsoft Intune](https://docs.microsoft.com/intune/get-started/network-infrastructure-requirements-for-microsoft-intune)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -8,8 +8,8 @@ ms.mktglfcycl: explore
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -81,4 +81,4 @@ Sign-in a domain controller or management workstation with domain administrator
|
|||||||
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
||||||
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
||||||
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-cert-trust-validate-deploy-mfa.md)
|
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-cert-trust-validate-deploy-mfa.md)
|
||||||
5. [Configure Windows Hello for Business Policy settings](hello-cert-trust-policy-settings.md)
|
5. [Configure Windows Hello for Business Policy settings](hello-cert-trust-policy-settings.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -51,4 +51,4 @@ Once you have validated all the requirements, please proceed to [Configure or De
|
|||||||
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
||||||
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
||||||
4. Validate and Deploy Multifactor Authentication Services (MFA) (*You are here*)
|
4. Validate and Deploy Multifactor Authentication Services (MFA) (*You are here*)
|
||||||
5. [Configure Windows Hello for Business Policy settings](hello-cert-trust-policy-settings.md)
|
5. [Configure Windows Hello for Business Policy settings](hello-cert-trust-policy-settings.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -30,4 +30,4 @@ Below, you can find all the information you will need to deploy Windows Hello fo
|
|||||||
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
||||||
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
||||||
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-cert-trust-validate-deploy-mfa.md)
|
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-cert-trust-validate-deploy-mfa.md)
|
||||||
5. [Configure Windows Hello for Business Policy settings](hello-cert-trust-policy-settings.md)
|
5. [Configure Windows Hello for Business Policy settings](hello-cert-trust-policy-settings.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -8,8 +8,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -6,8 +6,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -6,8 +6,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -6,8 +6,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -45,4 +45,4 @@ Provision can occur automatically through the out-of-box-experience (OOBE) on Az
|
|||||||
|
|
||||||
Authentication using Windows Hello for Business is the goal, and the first step in getting to a passwordless environment. With the device registered, and provisioning complete. Users can sign-in to Windows 10 using biometrics or a PIN. PIN is the most common gesture and is avaiable on most computers and devices. Regardless of the gesture used, authentication occurs using the private portion of the Windows Hello for Business credential. The PIN nor the private portion of the credential are never sent to the identity provider, and the PIN is not stored on the device. It is user provided entropy when performing operations that use the private portion of the credential.
|
Authentication using Windows Hello for Business is the goal, and the first step in getting to a passwordless environment. With the device registered, and provisioning complete. Users can sign-in to Windows 10 using biometrics or a PIN. PIN is the most common gesture and is avaiable on most computers and devices. Regardless of the gesture used, authentication occurs using the private portion of the Windows Hello for Business credential. The PIN nor the private portion of the credential are never sent to the identity provider, and the PIN is not stored on the device. It is user provided entropy when performing operations that use the private portion of the credential.
|
||||||
|
|
||||||
[How Windows Hello for Business authentication works](hello-how-it-works-authentication.md)
|
[How Windows Hello for Business authentication works](hello-how-it-works-authentication.md)
|
||||||
|
@ -6,8 +6,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -6,8 +6,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -41,4 +41,4 @@ Windows Hello for Business is a distributed system that uses several components
|
|||||||
- [Windows Hello and password changes](hello-and-password-changes.md)
|
- [Windows Hello and password changes](hello-and-password-changes.md)
|
||||||
- [Windows Hello errors during PIN creation](hello-errors-during-pin-creation.md)
|
- [Windows Hello errors during PIN creation](hello-errors-during-pin-creation.md)
|
||||||
- [Event ID 300 - Windows Hello successfully created](hello-event-300.md)
|
- [Event ID 300 - Windows Hello successfully created](hello-event-300.md)
|
||||||
- [Windows Hello biometrics in the enterprise](hello-biometrics-in-enterprise.md)
|
- [Windows Hello biometrics in the enterprise](hello-biometrics-in-enterprise.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -145,4 +145,4 @@ Alternatively, you can configure Windows Server 2016 Active Directory Federation
|
|||||||
3. New Installation Baseline (*You are here*)
|
3. New Installation Baseline (*You are here*)
|
||||||
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
||||||
5. [Configure Windows Hello for Business settings](hello-hybrid-cert-whfb-settings.md)
|
5. [Configure Windows Hello for Business settings](hello-hybrid-cert-whfb-settings.md)
|
||||||
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -52,4 +52,4 @@ Regardless of the baseline you choose, you’re next step is to familiarize your
|
|||||||
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
||||||
4. [Device Registration](hello-hybrid-cert-trust-devreg.md)
|
4. [Device Registration](hello-hybrid-cert-trust-devreg.md)
|
||||||
5. [Configure Windows Hello for Business settings](hello-hybrid-cert-whfb-settings.md)
|
5. [Configure Windows Hello for Business settings](hello-hybrid-cert-whfb-settings.md)
|
||||||
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
||||||
|
@ -1,4 +1,4 @@
|
|||||||
---
|
---
|
||||||
title: Hybrid Windows Hello for Business Provisioning (Windows Hello for Business)
|
title: Hybrid Windows Hello for Business Provisioning (Windows Hello for Business)
|
||||||
description: Provisioning for Hybrid Windows Hello for Business Deployments
|
description: Provisioning for Hybrid Windows Hello for Business Deployments
|
||||||
keywords: identity, PIN, biometric, Hello, passport, WHFB, hybrid, certificate-trust
|
keywords: identity, PIN, biometric, Hello, passport, WHFB, hybrid, certificate-trust
|
||||||
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -18,7 +18,7 @@ ms.date: 08/19/2018
|
|||||||
# Hybrid Windows Hello for Business Provisioning
|
# Hybrid Windows Hello for Business Provisioning
|
||||||
|
|
||||||
**Applies to**
|
**Applies to**
|
||||||
- Windows 10, version 1703 or later
|
- Windows 10, version 1703 or later
|
||||||
- Hybrid deployment
|
- Hybrid deployment
|
||||||
- Certificate trust
|
- Certificate trust
|
||||||
|
|
||||||
@ -65,7 +65,7 @@ After a successful key registration, Windows creates a certificate request using
|
|||||||
|
|
||||||
The AD FS registration authority verifies the key used in the certificate request matches the key that was previously registered. On a successful match, the AD FS registration authority signs the certificate request using its enrollment agent certificate and sends it to the certificate authority.
|
The AD FS registration authority verifies the key used in the certificate request matches the key that was previously registered. On a successful match, the AD FS registration authority signs the certificate request using its enrollment agent certificate and sends it to the certificate authority.
|
||||||
|
|
||||||
The certificate authority validates the certificate was signed by the registration authority. On successful validation of the signature, it issues a certificate based on the request and returns the certificate to the AD FS registration authority. The registration authority returns the certificate to Windows where it then installs the certificate in the current user’s certificate store. Once this process completes, the Windows Hello for Business provisioning workflow informs the user they can use their PIN to sign-in through the Windows Action Center.
|
The certificate authority validates the certificate was signed by the registration authority. On successful validation of the signature, it issues a certificate based on the request and returns the certificate to the AD FS registration authority. The registration authority returns the certificate to Windows where it then installs the certificate in the current user’s certificate store. Once this process completes, the Windows Hello for Business provisioning workflow informs the user they can use their PIN to sign-in through the Windows Action Center.
|
||||||
|
|
||||||
<br><br>
|
<br><br>
|
||||||
|
|
||||||
@ -77,5 +77,5 @@ The certificate authority validates the certificate was signed by the registrati
|
|||||||
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
||||||
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
||||||
5. [Configure Windows Hello for Business policy settings](hello-hybrid-cert-whfb-settings-policy.md)
|
5. [Configure Windows Hello for Business policy settings](hello-hybrid-cert-whfb-settings-policy.md)
|
||||||
6. Sign-in and Provision(*You are here*)
|
6. Sign-in and Provision(*You are here*)
|
||||||
|
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -78,4 +78,4 @@ Sign-in a domain controller or management workstation with *Domain Admin* equiva
|
|||||||
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
||||||
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
||||||
5. Configure Windows Hello for Business settings: Active Directory (*You are here*)
|
5. Configure Windows Hello for Business settings: Active Directory (*You are here*)
|
||||||
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -201,4 +201,4 @@ Users must receive the Windows Hello for Business group policy settings and have
|
|||||||
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
||||||
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
||||||
5. Configure Windows Hello for Business policy settings (*You are here*)
|
5. Configure Windows Hello for Business policy settings (*You are here*)
|
||||||
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -48,4 +48,4 @@ For the most efficient deployment, configure these technologies in order beginni
|
|||||||
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
3. [New Installation Baseline](hello-hybrid-cert-new-install.md)
|
||||||
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
4. [Configure Azure Device Registration](hello-hybrid-cert-trust-devreg.md)
|
||||||
5. Configure Windows Hello for Business settings (*You are here*)
|
5. Configure Windows Hello for Business settings (*You are here*)
|
||||||
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
6. [Sign-in and Provision](hello-hybrid-cert-whfb-provision.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -43,4 +43,4 @@ Next, you need to synchronizes the on-premises Active Directory with Azure Activ
|
|||||||
4. Configure Directory Synchronization (*You are here*)
|
4. Configure Directory Synchronization (*You are here*)
|
||||||
5. [Configure Azure Device Registration](hello-hybrid-key-trust-devreg.md)
|
5. [Configure Azure Device Registration](hello-hybrid-key-trust-devreg.md)
|
||||||
6. [Configure Windows Hello for Business settings](hello-hybrid-key-whfb-settings.md)
|
6. [Configure Windows Hello for Business settings](hello-hybrid-key-whfb-settings.md)
|
||||||
7. [Sign-in and Provision](hello-hybrid-key-whfb-provision.md)
|
7. [Sign-in and Provision](hello-hybrid-key-whfb-provision.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -50,4 +50,4 @@ You’re next step is to familiarize yourself with the prerequisites needed for
|
|||||||
4. [Configure Directory Synchronization](hello-hybrid-key-trust-dirsync.md)
|
4. [Configure Directory Synchronization](hello-hybrid-key-trust-dirsync.md)
|
||||||
5. [Configure Azure Device Registration](hello-hybrid-key-trust-devreg.md)
|
5. [Configure Azure Device Registration](hello-hybrid-key-trust-devreg.md)
|
||||||
6. [Configure Windows Hello for Business settings](hello-hybrid-key-whfb-settings.md)
|
6. [Configure Windows Hello for Business settings](hello-hybrid-key-whfb-settings.md)
|
||||||
7. [Sign-in and Provision](hello-hybrid-key-whfb-provision.md)
|
7. [Sign-in and Provision](hello-hybrid-key-whfb-provision.md)
|
||||||
|
@ -1,4 +1,4 @@
|
|||||||
---
|
---
|
||||||
title: Hybrid Windows Hello for Business key trust Provisioning (Windows Hello for Business)
|
title: Hybrid Windows Hello for Business key trust Provisioning (Windows Hello for Business)
|
||||||
description: Provisioning for Hybrid Windows Hello for Business Deployments
|
description: Provisioning for Hybrid Windows Hello for Business Deployments
|
||||||
keywords: identity, PIN, biometric, Hello, passport, WHFB, hybrid, certificate-trust
|
keywords: identity, PIN, biometric, Hello, passport, WHFB, hybrid, certificate-trust
|
||||||
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -18,7 +18,7 @@ ms.date: 08/20/2018
|
|||||||
# Hybrid Windows Hello for Business Provisioning
|
# Hybrid Windows Hello for Business Provisioning
|
||||||
|
|
||||||
**Applies to**
|
**Applies to**
|
||||||
- Windows 10, version 1703 or later
|
- Windows 10, version 1703 or later
|
||||||
- Hybrid deployment
|
- Hybrid deployment
|
||||||
- Key trust
|
- Key trust
|
||||||
|
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -8,8 +8,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -130,4 +130,4 @@ Users must receive the Windows Hello for Business group policy settings and have
|
|||||||
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
2. [Validate and Configure Public Key Infrastructure](hello-cert-trust-validate-pki.md)
|
||||||
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-cert-trust-adfs.md)
|
||||||
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-cert-trust-validate-deploy-mfa.md)
|
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-cert-trust-validate-deploy-mfa.md)
|
||||||
5. Configure Windows Hello for Business Policy settings (*You are here*)
|
5. Configure Windows Hello for Business Policy settings (*You are here*)
|
||||||
|
@ -9,7 +9,7 @@ ms.pagetype: security, mobile
|
|||||||
author: DaniHalfin
|
author: DaniHalfin
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mikestephens-MS
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -47,4 +47,4 @@ Sign-in a domain controller or management workstation with _Domain Admin_ equiva
|
|||||||
2. [Validate and Configure Public Key Infrastructure](hello-key-trust-validate-pki.md)
|
2. [Validate and Configure Public Key Infrastructure](hello-key-trust-validate-pki.md)
|
||||||
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-key-trust-adfs.md)
|
3. [Prepare and Deploy Windows Server 2016 Active Directory Federation Services](hello-key-trust-adfs.md)
|
||||||
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-key-trust-validate-deploy-mfa.md)
|
4. [Validate and Deploy Multifactor Authentication Services (MFA)](hello-key-trust-validate-deploy-mfa.md)
|
||||||
5. [Configure Windows Hello for Business Policy settings](hello-key-trust-policy-settings.md)
|
5. [Configure Windows Hello for Business Policy settings](hello-key-trust-policy-settings.md)
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: conceptual
|
ms.topic: conceptual
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -8,8 +8,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -47,4 +47,4 @@ If the user can sign-in with a password, they can reset their PIN by clicking th
|
|||||||
|
|
||||||
> [!VIDEO https://www.youtube.com/embed/KcVTq8lTlkI]
|
> [!VIDEO https://www.youtube.com/embed/KcVTq8lTlkI]
|
||||||
|
|
||||||
For on-premises deployments, devices must be well connected to their on-premises network (domain controllers and/or certificate authority) to reset their PINs. Hybrid customers can on-board their Azure tenant to use the Windows Hello for Business PIN reset service to reset their PINs without access to their corporate network.
|
For on-premises deployments, devices must be well connected to their on-premises network (domain controllers and/or certificate authority) to reset their PINs. Hybrid customers can on-board their Azure tenant to use the Windows Hello for Business PIN reset service to reset their PINs without access to their corporate network.
|
||||||
|
@ -7,8 +7,8 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security, mobile
|
ms.pagetype: security, mobile
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
author: mikestephens-MS
|
author: mapalko
|
||||||
ms.author: mstephen
|
ms.author: mapalko
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
ms.collection: M365-identity-device-management
|
ms.collection: M365-identity-device-management
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
|
@ -19,12 +19,9 @@ ms.topic: article
|
|||||||
# Add or Remove Machine Tags API
|
# Add or Remove Machine Tags API
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
This API adds or remove tag to a specific machine.
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
- Adds or remove tag to a specific machine.
|
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
@ -20,8 +20,6 @@ ms.topic: article
|
|||||||
**Applies to:**
|
**Applies to:**
|
||||||
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Represents an alert entity in Windows Defender ATP.
|
Represents an alert entity in Windows Defender ATP.
|
||||||
|
|
||||||
# Methods
|
# Methods
|
||||||
|
@ -14,18 +14,16 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Collect investigation package API
|
# Collect investigation package API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Collect investigation package from a machine.
|
Collect investigation package from a machine.
|
||||||
|
|
||||||
[!include[Machine actions note](machineactionsnote.md)]
|
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
@ -21,7 +21,7 @@ ms.date: 04/11/2019
|
|||||||
**Applies to:**
|
**Applies to:**
|
||||||
- [Microsoft Defender Advanced Threat Protection (Microsoft Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Microsoft Defender Advanced Threat Protection (Microsoft Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease<EFBFBD>information](prerelease.md)]
|
[!include[Prerelease information](prerelease.md)]
|
||||||
|
|
||||||
>[!NOTE]
|
>[!NOTE]
|
||||||
> Secure score is now part of Threat & Vulnerability Management as Configuration score. We’ll keep the secure score page available for a few weeks. View the [Secure score](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/overview-secure-score-windows-defender-advanced-threat-protection) page.
|
> Secure score is now part of Threat & Vulnerability Management as Configuration score. We’ll keep the secure score page available for a few weeks. View the [Secure score](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/overview-secure-score-windows-defender-advanced-threat-protection) page.
|
||||||
|
@ -20,7 +20,7 @@ ms.topic: article
|
|||||||
**Applies to:**
|
**Applies to:**
|
||||||
- [Windows Defender Advanced Threat Protection Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Windows Defender Advanced Threat Protection Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease<EFBFBD>information](prerelease.md)]
|
[!include[Prerelease information](prerelease.md)]
|
||||||
|
|
||||||
This section guides you through the steps you need to take to configure Threat & Vulnerability Management's integration with Microsoft Intune or Microsoft System Center Configuration Manager (SCCM) for a seamless collaboration of issue remediation.
|
This section guides you through the steps you need to take to configure Threat & Vulnerability Management's integration with Microsoft Intune or Microsoft System Center Configuration Manager (SCCM) for a seamless collaboration of issue remediation.
|
||||||
|
|
||||||
|
@ -28,47 +28,40 @@ ms.topic: article
|
|||||||
|
|
||||||
|
|
||||||
|
|
||||||
Windows Defender ATP provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in Windows Defender Security Center and better protect your organization's network. This experience leverages on a third-party security products’ sensor data.
|
Windows Defender ATP provides a centralized security operations experience for Windows as well as non-Windows platforms. You'll be able to see alerts from various supported operating systems (OS) in Windows Defender Security Center and better protect your organization's network.
|
||||||
|
|
||||||
You'll need to know the exact Linux distros and macOS versions that are compatible with Windows Defender ATP for the integration to work.
|
You'll need to know the exact Linux distros and macOS versions that are compatible with Windows Defender ATP for the integration to work.
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
## Onboarding non-Windows machines
|
||||||
You'll need to take the following steps to onboard non-Windows machines:
|
You'll need to take the following steps to onboard non-Windows machines:
|
||||||
1. Turn on third-party integration
|
1. Select your preferred method of onboarding:
|
||||||
2. Run a detection test
|
|
||||||
|
|
||||||
## Turn on third-party integration
|
- For macOS devices, you can choose to onboard through Windows Defender ATP or through a third-party solution. For more information, see [Microsoft Defender ATP for Mac](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-antivirus/microsoft-defender-atp-mac).
|
||||||
|
- For other non-Windows devices choose **Onboard non-Windows machines through third-party integration**.
|
||||||
|
|
||||||
|
1. In the navigation pane, select **Interoperability** > **Partners**. Make sure the third-party solution is listed.
|
||||||
|
|
||||||
1. In the navigation pane, select **Settings** > **Onboarding**. Make sure the third-party solution is listed.
|
2. In the **Partner Applications** tab, select the partner that supports your non-Windows devices.
|
||||||
|
|
||||||
2. Select **Linux, macOS, iOS and Android** as the operating system.
|
3. Select **Open partner page** to open the partner's page. Follow the instructions provided on the page.
|
||||||
|
|
||||||
3. Turn on the third-party solution integration.
|
4. After creating an account or subscribing to the partner solution, you should get to a stage where a tenant Global Admin in your organization is asked to accept a permission request from the partner application. Read the permission request carefully to make sure that it is aligned with the service that you require.
|
||||||
|
|
||||||
4. Click **Generate access token** button and then **Copy**.
|
|
||||||
|
2. Run a detection test by following the instructions of the third-party solution.
|
||||||
5. You’ll need to copy and paste the token to the third-party solution you’re using. The implementation may vary depending on the solution.
|
|
||||||
|
|
||||||
|
|
||||||
>[!WARNING]
|
|
||||||
>The access token has a limited validity period. If needed, regenerate the token close to the time you need to share it with the third-party solution.
|
|
||||||
|
|
||||||
### Run detection test
|
|
||||||
Create an EICAR test file by saving the string displayed on the portal in an empty text file. Then, introduce the test file to a machine running the third-party antivirus solution.
|
|
||||||
|
|
||||||
The file should trigger a detection and a corresponding alert on Windows Defender ATP.
|
|
||||||
|
|
||||||
## Offboard non-Windows machines
|
## Offboard non-Windows machines
|
||||||
To effectively offboard the machine from the service, you'll need to disable the data push on the third-party portal first then switch the toggle to off in Windows Defender Security Center. The toggle in the portal only blocks the data inbound flow.
|
|
||||||
|
|
||||||
|
1. Follow the third-party's documentation to disconnect the third-party solution from Windows Defender ATP.
|
||||||
|
|
||||||
1. Follow the third-party documentation to opt-out on the third-party service side.
|
2. Remove permissions for the third-party solution in your Azure AD tenant.
|
||||||
|
1. Sign in to the [Azure portal](https://portal.azure.com).
|
||||||
|
2. Select **Azure Active Directory > Enterprise Applications**.
|
||||||
|
3. Select the application you'd like to offboard.
|
||||||
|
4. Select the **Delete** button.
|
||||||
|
|
||||||
2. In the navigation pane, select **Settings** > **Onboarding**.
|
|
||||||
|
|
||||||
3. Turn off the third-party solution integration.
|
|
||||||
|
|
||||||
>[!WARNING]
|
|
||||||
>If you decide to turn on the third-party integration again after disabling the integration, you'll need to regenerate the token and reapply it on machines.
|
|
||||||
|
|
||||||
## Related topics
|
## Related topics
|
||||||
- [Onboard Windows 10 machines](configure-endpoints-windows-defender-advanced-threat-protection.md)
|
- [Onboard Windows 10 machines](configure-endpoints-windows-defender-advanced-threat-protection.md)
|
||||||
|
@ -23,7 +23,7 @@ ms.date: 02/28/2019
|
|||||||
|
|
||||||
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease<EFBFBD>information](prerelease.md)]
|
[!include[Prerelease information](prerelease.md)]
|
||||||
|
|
||||||
## Before you begin
|
## Before you begin
|
||||||
To experience the full Microsoft Threat Experts preview capability in Windows Defender ATP, you need to have a valid Premier customer service and support account. However, Premier charges will not be incurred during the preview.
|
To experience the full Microsoft Threat Experts preview capability in Windows Defender ATP, you need to have a valid Premier customer service and support account. However, Premier charges will not be incurred during the preview.
|
||||||
|
@ -14,16 +14,12 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Create alert from event API
|
# Create alert from event API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
Enables using event data, as obtained from the [Advanced Hunting](run-advanced-query-api.md) for creating a new alert entity.
|
Enables using event data, as obtained from the [Advanced Hunting](run-advanced-query-api.md) for creating a new alert entity.
|
||||||
|
@ -21,10 +21,9 @@ ms.topic: article
|
|||||||
**Applies to:**
|
**Applies to:**
|
||||||
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
>[!Note]
|
>[!Note]
|
||||||
> Currently this API is supported only for AppOnly context requests. (See [Get access with application context](exposed-apis-create-app-webapp.md) for more information)
|
> Currently this API is only supported for AppOnly context requests. (See [Get access with application context](exposed-apis-create-app-webapp.md) for more information)
|
||||||
|
|
||||||
|
|
||||||
- Deletes an Indicator entity by ID.
|
- Deletes an Indicator entity by ID.
|
||||||
|
@ -19,12 +19,11 @@ ms.date: 09/03/2018
|
|||||||
|
|
||||||
# Use Windows Defender ATP APIs
|
# Use Windows Defender ATP APIs
|
||||||
|
|
||||||
**Applies to:** [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://wincom.blob.core.windows.net/documents/Windows10_Commercial_Comparison.pdf)
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
> Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-exposedapis-abovefoldlink)
|
> Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-exposedapis-abovefoldlink)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
This page describes how to create an application to get programmatic access to Windows Defender ATP on behalf of a user.
|
This page describes how to create an application to get programmatic access to Windows Defender ATP on behalf of a user.
|
||||||
|
|
||||||
|
@ -19,11 +19,11 @@ ms.date: 09/03/2018
|
|||||||
|
|
||||||
# Create an app to access Windows Defender ATP without a user
|
# Create an app to access Windows Defender ATP without a user
|
||||||
|
|
||||||
**Applies to:** [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://wincom.blob.core.windows.net/documents/Windows10_Commercial_Comparison.pdf)
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
> Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-exposedapis-abovefoldlink)
|
> Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-exposedapis-abovefoldlink)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
This page describes how to create an application to get programmatic access to Windows Defender ATP without a user.
|
This page describes how to create an application to get programmatic access to Windows Defender ATP without a user.
|
||||||
|
|
||||||
|
@ -21,8 +21,6 @@ ms.date: 09/24/2018
|
|||||||
**Applies to:**
|
**Applies to:**
|
||||||
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
Full scenario using multiple APIs from Windows Defender ATP.
|
Full scenario using multiple APIs from Windows Defender ATP.
|
||||||
|
|
||||||
|
@ -14,18 +14,17 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 11/15/2018
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# OData queries with Windows Defender ATP
|
# OData queries with Windows Defender ATP
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
- If you are not familiar with OData queries, see: [OData V4 queries](https://www.odata.org/documentation/)
|
|
||||||
|
|
||||||
- Not all properties are filterable.
|
If you are not familiar with OData queries, see: [OData V4 queries](https://www.odata.org/documentation/)
|
||||||
|
|
||||||
|
Not all properties are filterable.
|
||||||
|
|
||||||
### Properties that supports $filter:
|
### Properties that supports $filter:
|
||||||
|
|
||||||
|
@ -20,7 +20,6 @@ ms.topic: article
|
|||||||
**Applies to:**
|
**Applies to:**
|
||||||
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Represent a file entity in Windows Defender ATP.
|
Represent a file entity in Windows Defender ATP.
|
||||||
|
|
||||||
|
@ -19,11 +19,8 @@ ms.date: 07/25/2018
|
|||||||
|
|
||||||
# Find machine information by internal IP API
|
# Find machine information by internal IP API
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
|
|
||||||
Find a machine by internal IP.
|
Find a machine by internal IP.
|
||||||
|
@ -14,19 +14,16 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Find machines by internal IP API
|
# Find machines by internal IP API
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
Find machines seen with the requested internal IP in the time range of 15 minutes prior and after a given timestamp
|
||||||
|
|
||||||
- Find machines seen with the requested internal IP in the time range of 15 minutes prior and after a given timestamp
|
The given timestamp must be in the past 30 days.
|
||||||
- The given timestamp must be in the past 30 days.
|
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
@ -14,14 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get alert information by ID API
|
# Get alert information by ID API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Retrieves an alert by its ID.
|
Retrieves an alert by its ID.
|
||||||
|
|
||||||
|
@ -14,14 +14,12 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get alert related domain information API
|
# Get alert related domain information API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Retrieves all domains related to a specific alert.
|
Retrieves all domains related to a specific alert.
|
||||||
|
|
||||||
|
@ -14,14 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get alert related files information API
|
# Get alert related files information API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Retrieves all files related to a specific alert.
|
Retrieves all files related to a specific alert.
|
||||||
|
|
||||||
|
@ -14,14 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get alert related IP information API
|
# Get alert related IP information API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves all IPs related to a specific alert.
|
Retrieves all IPs related to a specific alert.
|
||||||
|
@ -14,17 +14,13 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get alert related machine information API
|
# Get alert related machine information API
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
Retrieves machine that is related to a specific alert.
|
||||||
|
|
||||||
- Retrieves machine that is related to a specific alert.
|
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
@ -14,14 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get alert related user information API
|
# Get alert related user information API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves the user associated to a specific alert.
|
Retrieves the user associated to a specific alert.
|
||||||
|
@ -14,21 +14,20 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# List alerts API
|
# List alerts API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
Retrieves a collection of Alerts.
|
||||||
|
|
||||||
|
Supports [OData V4 queries](https://www.odata.org/documentation/).
|
||||||
|
|
||||||
- Retrieves a collection of Alerts.
|
The OData's Filter query is supported on: "Id", "IncidentId", "AlertCreationTime", "Status", "Severity" and "Category".
|
||||||
- Supports [OData V4 queries](https://www.odata.org/documentation/).
|
|
||||||
- The OData's Filter query is supported on: "Id", "IncidentId", "AlertCreationTime", "Status", "Severity" and "Category".
|
See examples at [OData queries with Windows Defender ATP](exposed-apis-odata-samples.md)
|
||||||
- See examples at [OData queries with Windows Defender ATP](exposed-apis-odata-samples.md)
|
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
@ -10,10 +10,10 @@ ms.sitesec: library
|
|||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
ms.author: leonidzh
|
ms.author: leonidzh
|
||||||
author: mjcaparas
|
author: mjcaparas
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 10/07/2018
|
ms.date: 10/07/2018
|
||||||
---
|
---
|
||||||
|
@ -14,19 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get domain related alerts API
|
# Get domain related alerts API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves a collection of alerts related to a given domain address.
|
Retrieves a collection of alerts related to a given domain address.
|
||||||
|
|
||||||
|
@ -14,14 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get domain related machines API
|
# Get domain related machines API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Retrieves a collection of machines that have communicated to or from a given domain address.
|
Retrieves a collection of machines that have communicated to or from a given domain address.
|
||||||
|
|
||||||
|
@ -14,15 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get domain statistics API
|
# Get domain statistics API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Retrieves the prevalence for the given domain.
|
Retrieves the prevalence for the given domain.
|
||||||
|
|
||||||
|
@ -14,16 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get file information API
|
# Get file information API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves a file by identifier Sha1, Sha256, or MD5.
|
Retrieves a file by identifier Sha1, Sha256, or MD5.
|
||||||
|
|
||||||
|
@ -14,16 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get file related alerts API
|
# Get file related alerts API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves a collection of alerts related to a given file hash.
|
Retrieves a collection of alerts related to a given file hash.
|
||||||
|
@ -14,16 +14,12 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get file related machines API
|
# Get file related machines API
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
- Retrieves a collection of machines related to a given file hash.
|
- Retrieves a collection of machines related to a given file hash.
|
||||||
|
|
||||||
|
@ -14,19 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get file statistics API
|
# Get file statistics API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves the prevalence for the given file.
|
Retrieves the prevalence for the given file.
|
||||||
|
|
||||||
|
@ -14,15 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get IP related alerts API
|
# Get IP related alerts API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
Retrieves a collection of alerts related to a given IP address.
|
Retrieves a collection of alerts related to a given IP address.
|
||||||
|
|
||||||
|
@ -14,14 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get IP related machines API
|
# Get IP related machines API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves a collection of machines that communicated with or from a particular IP.
|
Retrieves a collection of machines that communicated with or from a particular IP.
|
||||||
|
@ -14,17 +14,11 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get IP statistics API
|
# Get IP statistics API
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
Retrieves the prevalence for the given IP.
|
Retrieves the prevalence for the given IP.
|
||||||
|
|
||||||
|
@ -14,18 +14,14 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get machine by ID API
|
# Get machine by ID API
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
Retrieves a machine entity by ID.
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
- Retrieves a machine entity by ID.
|
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
@ -14,16 +14,12 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get machine log on users API
|
# Get machine log on users API
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
Retrieves a collection of logged on users.
|
Retrieves a collection of logged on users.
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
|
@ -14,16 +14,12 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get machine related alerts API
|
# Get machine related alerts API
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
Retrieves a collection of alerts related to a given machine ID.
|
Retrieves a collection of alerts related to a given machine ID.
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
|
@ -14,18 +14,14 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# Get machineAction API
|
# Get machineAction API
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
Get action performed on a machine.
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
|
||||||
|
|
||||||
- Get action performed on a machine.
|
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
@ -14,21 +14,21 @@ manager: dansimp
|
|||||||
audience: ITPro
|
audience: ITPro
|
||||||
ms.collection: M365-security-compliance
|
ms.collection: M365-security-compliance
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.date: 12/08/2017
|
|
||||||
---
|
---
|
||||||
|
|
||||||
# List MachineActions API
|
# List MachineActions API
|
||||||
|
|
||||||
**Applies to:**
|
**Applies to:**
|
||||||
|
- [Windows Defender Advanced Threat Protection (Windows Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
Gets collection of actions done on machines.
|
||||||
|
|
||||||
- Gets collection of actions done on machines.
|
Get MachineAction collection API supports [OData V4 queries](https://www.odata.org/documentation/).
|
||||||
- Get MachineAction collection API supports [OData V4 queries](https://www.odata.org/documentation/).
|
|
||||||
- The OData's Filter query is supported on: "Id", "Status", "MachineId", "Type", "Requestor" and "CreationDateTimeUtc".
|
The OData's Filter query is supported on: "Id", "Status", "MachineId", "Type", "Requestor" and "CreationDateTimeUtc".
|
||||||
- See examples at [OData queries with Windows Defender ATP](exposed-apis-odata-samples.md)
|
|
||||||
|
See examples at [OData queries with Windows Defender ATP](exposed-apis-odata-samples.md)
|
||||||
|
|
||||||
## Permissions
|
## Permissions
|
||||||
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
One of the following permissions is required to call this API. To learn more, including how to choose permissions, see [Use Windows Defender ATP APIs](apis-intro.md)
|
||||||
|
Some files were not shown because too many files have changed in this diff Show More
Loading…
x
Reference in New Issue
Block a user