mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-13 22:07:22 +00:00
Merge branch 'master' into partners
This commit is contained in:
commit
c9b1f0446c
@ -1,13 +1,15 @@
|
|||||||
# [Microsoft HoloLens](index.md)
|
# [Microsoft HoloLens](index.md)
|
||||||
# [What's new in HoloLens](hololens-whats-new.md)
|
# [What's new in HoloLens](hololens-whats-new.md)
|
||||||
# [HoloLens in the enterprise: requirements and FAQ](hololens-requirements.md)
|
|
||||||
# [Set up HoloLens](hololens-setup.md)
|
# [Set up HoloLens](hololens-setup.md)
|
||||||
|
|
||||||
|
# Deploy HoloLens in a commercial environment
|
||||||
|
## [Overview and deployment planning](hololens-requirements.md)
|
||||||
|
## [Configure HoloLens using a provisioning package](hololens-provisioning.md)
|
||||||
|
## [Enroll HoloLens in MDM](hololens-enroll-mdm.md)
|
||||||
|
|
||||||
# Device Management
|
# Device Management
|
||||||
## [Unlock Windows Holographic for Business features](hololens-upgrade-enterprise.md)
|
## [Unlock Windows Holographic for Business features](hololens-upgrade-enterprise.md)
|
||||||
## [Install localized version of HoloLens](hololens-install-localized.md)
|
## [Install localized version of HoloLens](hololens-install-localized.md)
|
||||||
## [Configure HoloLens using a provisioning package](hololens-provisioning.md)
|
|
||||||
## [Enroll HoloLens in MDM](hololens-enroll-mdm.md)
|
|
||||||
## [Manage updates to HoloLens](hololens-updates.md)
|
## [Manage updates to HoloLens](hololens-updates.md)
|
||||||
## [Restore HoloLens 2 using Advanced Recovery Companion](hololens-recovery.md)
|
## [Restore HoloLens 2 using Advanced Recovery Companion](hololens-recovery.md)
|
||||||
## [Use the HoloLens Clicker](hololens-clicker.md)
|
## [Use the HoloLens Clicker](hololens-clicker.md)
|
||||||
|
BIN
devices/hololens/images/hololens2-side-render-medium.png
Normal file
BIN
devices/hololens/images/hololens2-side-render-medium.png
Normal file
Binary file not shown.
After Width: | Height: | Size: 1017 KiB |
BIN
devices/hololens/images/hololens2-side-render-small.png
Normal file
BIN
devices/hololens/images/hololens2-side-render-small.png
Normal file
Binary file not shown.
After Width: | Height: | Size: 247 KiB |
BIN
devices/hololens/images/hololens2-side-render-xs.png
Normal file
BIN
devices/hololens/images/hololens2-side-render-xs.png
Normal file
Binary file not shown.
After Width: | Height: | Size: 69 KiB |
@ -3,6 +3,7 @@ title: Microsoft HoloLens (HoloLens)
|
|||||||
description: Landing page for HoloLens commercial and enterprise management.
|
description: Landing page for HoloLens commercial and enterprise management.
|
||||||
ms.prod: hololens
|
ms.prod: hololens
|
||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
|
ms.assetid: 0947f5b3-8f0f-42f0-aa27-6d2cad51d040
|
||||||
author: scooley
|
author: scooley
|
||||||
ms.author: scooley
|
ms.author: scooley
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
@ -18,7 +19,9 @@ ms.date: 07/14/2019
|
|||||||
|
|
||||||
<p>Now, with the introduction of HoloLens 2, every device provides commercial ready management enhanced by the reliability, security, and scalability of cloud and AI services from Microsoft.</p>
|
<p>Now, with the introduction of HoloLens 2, every device provides commercial ready management enhanced by the reliability, security, and scalability of cloud and AI services from Microsoft.</p>
|
||||||
|
|
||||||
</td><td align="left" style="border: 0px"><img alt="HoloLens 2 side view" src="./images/hololens2-side-render.png"/></td></tr>
|
<p>To learn more about HoloLens 2 for developers, check out the <a href="https://docs.microsoft.com/windows/mixed-reality/">mixed reality developer documentation</a>.</p>
|
||||||
|
|
||||||
|
</td><td align="left" style="border: 0px"><img alt="HoloLens 2 side view" src="images/hololens2-side-render-xs.png"/></td></tr>
|
||||||
</tbody></table>
|
</tbody></table>
|
||||||
|
|
||||||
## Guides in this section
|
## Guides in this section
|
||||||
@ -26,7 +29,7 @@ ms.date: 07/14/2019
|
|||||||
| Guide | Description |
|
| Guide | Description |
|
||||||
| --- | --- |
|
| --- | --- |
|
||||||
| [Get started with HoloLens](hololens-setup.md) | Set up HoloLens for the first time. |
|
| [Get started with HoloLens](hololens-setup.md) | Set up HoloLens for the first time. |
|
||||||
| [Set up HoloLens in the enterprise](hololens-requirements.md) | Configure HoloLens for scale enterprise deployment and ongoing device management. |
|
| [Deploy HoloLens in a commercial environment](hololens-requirements.md) | Configure HoloLens for scale enterprise deployment and ongoing device management. |
|
||||||
| [Install and manage applications on HoloLens](hololens-install-apps.md) |Install and manage important applications on HoloLens at scale. |
|
| [Install and manage applications on HoloLens](hololens-install-apps.md) |Install and manage important applications on HoloLens at scale. |
|
||||||
| [Recover and troubleshoot HoloLens issues](https://support.microsoft.com/products/hololens) | Learn how to gather logs from HoloLens, recover a misbehaving device, or reset HoloLens when necessary. |
|
| [Recover and troubleshoot HoloLens issues](https://support.microsoft.com/products/hololens) | Learn how to gather logs from HoloLens, recover a misbehaving device, or reset HoloLens when necessary. |
|
||||||
| [Get support](https://support.microsoft.com/products/hololens) |Connect with Microsoft support resources for HoloLens in enterprise. |
|
| [Get support](https://support.microsoft.com/products/hololens) |Connect with Microsoft support resources for HoloLens in enterprise. |
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Configure and manage Microsoft Threat Experts capabilities
|
title: Configure and manage Microsoft Threat Experts capabilities
|
||||||
ms.reviewer:
|
ms.reviewer:
|
||||||
description: You need to register to Microsoft Threats Experts preview to configure, manage, and use it in your daily security operations and security administration work.
|
description: Register to Microsoft Threats Experts to configure, manage, and use it in your daily security operations and security administration work.
|
||||||
keywords: Microsoft Threat Experts, managed threat hunting service, MTE, Microsoft managed hunting service
|
keywords: Microsoft Threat Experts, managed threat hunting service, MTE, Microsoft managed hunting service
|
||||||
search.product: Windows 10
|
search.product: Windows 10
|
||||||
search.appverid: met150
|
search.appverid: met150
|
||||||
@ -9,8 +9,8 @@ ms.prod: w10
|
|||||||
ms.mktglfcycl: deploy
|
ms.mktglfcycl: deploy
|
||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
ms.author: mjcaparas
|
ms.author: dolmont
|
||||||
author: mjcaparas
|
author: DulceMontemayor
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
manager: dansimp
|
manager: dansimp
|
||||||
audience: ITPro
|
audience: ITPro
|
||||||
@ -23,12 +23,12 @@ ms.topic: article
|
|||||||
|
|
||||||
- [Microsoft Defender Advanced Threat Protection (Microsoft Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
- [Microsoft Defender Advanced Threat Protection (Microsoft Defender ATP)](https://go.microsoft.com/fwlink/p/?linkid=2069559)
|
||||||
|
|
||||||
[!include[Prerelease information](prerelease.md)]
|
[!Include[Prerelease information](prerelease.md)]
|
||||||
|
|
||||||
## Before you begin
|
## Before you begin
|
||||||
To experience the full Microsoft Threat Experts targeted attack notification capability in Microsoft Defender ATP, and preview the experts-on-demand capability, you need to have a valid Premier customer service and support account. Premier charges will not be incurred during for the capability in preview, but for the generally available capability, there will be charges.
|
To experience the full Microsoft Threat Experts targeted attack notification capability in Microsoft Defender ATP, and preview the experts-on-demand capability, you need to have a valid Premier customer service and support account. Premier charges are not incurred during for the capability in preview, but for the generally available capability, there will be charges.
|
||||||
|
|
||||||
You also need to ensure that you have Microsoft Defender ATP deployed in your environment with machines enrolled, and not just on a laboratory set-up.
|
Ensure that you have Microsoft Defender ATP deployed in your environment with machines enrolled, and not just on a laboratory set-up.
|
||||||
|
|
||||||
## Register to Microsoft Threat Experts managed threat hunting service
|
## Register to Microsoft Threat Experts managed threat hunting service
|
||||||
If you're already a Microsoft Defender ATP customer, you can apply through the Microsoft Defender ATP portal.
|
If you're already a Microsoft Defender ATP customer, you can apply through the Microsoft Defender ATP portal.
|
||||||
@ -47,11 +47,11 @@ If you're already a Microsoft Defender ATP customer, you can apply through the M
|
|||||||
6. From the navigation pane, go to **Settings** > **General** > **Advanced features** to turn the **Threat Experts** toggle on. Click **Save preferences**.
|
6. From the navigation pane, go to **Settings** > **General** > **Advanced features** to turn the **Threat Experts** toggle on. Click **Save preferences**.
|
||||||
|
|
||||||
## Receive targeted attack notification from Microsoft Threat Experts
|
## Receive targeted attack notification from Microsoft Threat Experts
|
||||||
You can receive targeted attack notification from Microsoft Threat Experts through the following:
|
You can receive targeted attack notification from Microsoft Threat Experts through the following medium:
|
||||||
- The Microsoft Defender ATP portal's **Alerts** dashboard
|
- The Microsoft Defender ATP portal's **Alerts** dashboard
|
||||||
- Your email, if you choose to configure it
|
- Your email, if you choose to configure it
|
||||||
|
|
||||||
To receive targeted attack notifications through email, you need to create an email notification rule.
|
To receive targeted attack notifications through email, create an email notification rule.
|
||||||
|
|
||||||
### Create an email notification rule
|
### Create an email notification rule
|
||||||
You can create rules to send email notifications for notification recipients. See [Configure alert notifications](configure-email-notifications.md) to create, edit, delete, or troubleshoot email notification, for details.
|
You can create rules to send email notifications for notification recipients. See [Configure alert notifications](configure-email-notifications.md) to create, edit, delete, or troubleshoot email notification, for details.
|
||||||
@ -68,11 +68,14 @@ You'll start receiving targeted attack notification from Microsoft Threat Expert
|
|||||||
>[!NOTE]
|
>[!NOTE]
|
||||||
>The Microsoft Threat Experts' experts-on-demand capability is still in preview. You can only use the experts-on-demand capability if you have applied for preview and your application has been approved.
|
>The Microsoft Threat Experts' experts-on-demand capability is still in preview. You can only use the experts-on-demand capability if you have applied for preview and your application has been approved.
|
||||||
|
|
||||||
You can partner with Microsoft Threat Experts who can be engaged directly from within the Windows Defender Security Center for timely and accurate response. Experts provide insights needed to better understand complex threats, targeted attack notifications that you get, or if you need more information about the alerts, a potentially compromised machine, or a threat intelligence context that you see on your portal dashboard.
|
You can partner with Microsoft Threat Experts who can be engaged directly from within the Windows Defender Security Center for timely and accurate response. Experts provide insights to better understand complex threats, targeted attack notifications that you get, or if you need more information about the alerts, a potentially compromised machine, or a threat intelligence context that you see on your portal dashboard.
|
||||||
|
|
||||||
1. Navigate to the portal page with the relevant information that you'd like to investigate, for example, the **Incident** page. Ensure that the page for the relevant alert or machine is in view before raising an inquiry.
|
>[!NOTE]
|
||||||
2. From the upper right-hand menu, click **?**, then select **Ask a threat expert**.
|
>Alert inquiries related to your organization's customized threat intelligence data are currently not supported. Consult your security operations or incident response team for details.
|
||||||
3. Asking a threat expert is a two-step process: you need to provide the necessary information and open a support ticket.
|
|
||||||
|
1. Navigate to the portal page with the relevant information that you'd like to investigate, for example, the **Incident** page. Ensure that the page for the relevant alert or machine is in view before you send an inquiry.
|
||||||
|
2. From the upper right-hand menu, click **?**. Then, select **Ask a threat expert**.
|
||||||
|
3. Asking a threat expert is a two-step process: provide the necessary information and open a support ticket.
|
||||||
|
|
||||||
**Step 1: Provide information**
|
**Step 1: Provide information**
|
||||||
a. Provide enough information to give the Microsoft Threat Experts enough context to start the investigation. Select the inquiry category from the **Provide information > Inquiry** details drop-down menu. <br>
|
a. Provide enough information to give the Microsoft Threat Experts enough context to start the investigation. Select the inquiry category from the **Provide information > Inquiry** details drop-down menu. <br>
|
||||||
@ -83,7 +86,7 @@ You can partner with Microsoft Threat Experts who can be engaged directly from w
|
|||||||
|
|
||||||
**Step 2: Open a support ticket**
|
**Step 2: Open a support ticket**
|
||||||
>[!NOTE]
|
>[!NOTE]
|
||||||
>To experience the full Microsoft Threat Experts preview capability in Microsoft Defender ATP, you need to have a Premier customer service and support account. However, you will not be charged for the Experts-on-demand service during the preview.
|
>To experience the full Microsoft Threat Experts preview capability in Microsoft Defender ATP, you need a Premier customer service and support account. However, you will not be charged for the Experts-on-demand service during the preview.
|
||||||
|
|
||||||
a. In the **New support request** customer support page, select the following from the dropdown menu and then click **Next**: <br>
|
a. In the **New support request** customer support page, select the following from the dropdown menu and then click **Next**: <br>
|
||||||
|
|
||||||
@ -100,7 +103,7 @@ You can partner with Microsoft Threat Experts who can be engaged directly from w
|
|||||||
|
|
||||||
e. Verify your contact details and add another if necessary. Then, click **Next**. <br>
|
e. Verify your contact details and add another if necessary. Then, click **Next**. <br>
|
||||||
|
|
||||||
f. Review the summary of your support request, and update if necessary. Make sure that you read and understand the **Microsoft Services Agreement** and **Privacy Statement**. Then, click **Submit**. You will see the confirmation page indicating the response time and your support request number. <br>
|
f. Review the summary of your support request, and update if necessary. Make sure that you read and understand the **Microsoft Services Agreement** and **Privacy Statement**. Then, click **Submit**. A confirmation page indicating the response time and your support request number shows. <br>
|
||||||
|
|
||||||
## Sample questions to ask Microsoft Threat Experts
|
## Sample questions to ask Microsoft Threat Experts
|
||||||
|
|
||||||
@ -111,12 +114,12 @@ You can partner with Microsoft Threat Experts who can be engaged directly from w
|
|||||||
- Can you give more context or insights about this alert: “Suspicious behavior by a system utility was observed”.
|
- Can you give more context or insights about this alert: “Suspicious behavior by a system utility was observed”.
|
||||||
|
|
||||||
**Possible machine compromise**
|
**Possible machine compromise**
|
||||||
- Can you please help answer why we see “Unknown process observed?” This is seen quite frequently on many machines and we would appreciate input on whether this is related to malicious activity.
|
- Can you help answer why we see “Unknown process observed?” This is seen quite frequently on many machines. We appreciate any input to clarify whether this is related to malicious activity.
|
||||||
- Can you help validate a possible compromise on the following system on [date] with similar behaviors as the previous [malware name] malware detection on the same system in [month]?
|
- Can you help validate a possible compromise on the following system on [date] with similar behaviors as the previous [malware name] malware detection on the same system in [month]?
|
||||||
|
|
||||||
**Threat intelligence details**
|
**Threat intelligence details**
|
||||||
- This morning, we detected a phishing email that delivered a malicious Word document to a user. This caused a series of suspicious events which triggered multiple Windows Defender alerts for [malware name] malware. Do you have any information on this malware? If yes, can you please send me a link?
|
- This morning, we detected a phishing email that delivered a malicious Word document to a user. This caused a series of suspicious events which triggered multiple Windows Defender alerts for [malware name] malware. Do you have any information on this malware? If yes, can you send me a link?
|
||||||
- I recently saw a [social media reference e.g. Twitter or blog] post about a threat that is targeting my industry. Can you help me understand what protection Microsoft Defender ATP provides against this threat actor?
|
- I recently saw a [social media reference e.g., Twitter or blog] post about a threat that is targeting my industry. Can you help me understand what protection Microsoft Defender ATP provides against this threat actor?
|
||||||
|
|
||||||
**Microsoft Threat Experts’ alert communications**
|
**Microsoft Threat Experts’ alert communications**
|
||||||
- Can your incident response team help us address the targeted attack notification that we got?
|
- Can your incident response team help us address the targeted attack notification that we got?
|
||||||
@ -129,7 +132,7 @@ You can partner with Microsoft Threat Experts who can be engaged directly from w
|
|||||||
## Scenario
|
## Scenario
|
||||||
|
|
||||||
### Receive a progress report about your managed hunting inquiry
|
### Receive a progress report about your managed hunting inquiry
|
||||||
Response from Microsoft Threat Experts varies according to your inquiry. They will email a progress report to you regarding the Ask a threat expert inquiry that you've submitted, within two days, to communicate the investigation status from the following categories:
|
Response from Microsoft Threat Experts varies according to your inquiry. They will email a progress report to you about the Ask a threat expert inquiry that you've submitted, within two days, to communicate the investigation status from the following categories:
|
||||||
- More information is needed to continue with the investigation
|
- More information is needed to continue with the investigation
|
||||||
- A file or several file samples are needed to determine the technical context
|
- A file or several file samples are needed to determine the technical context
|
||||||
- Investigation requires more time
|
- Investigation requires more time
|
||||||
|
Loading…
x
Reference in New Issue
Block a user