Skip to content

Commit 5df9146

Browse files
Merge pull request #221599 from arielsaghiv/patch-104
Update release-notes.md
2 parents 8ea97e1 + 17fa5cb commit 5df9146

File tree

1 file changed

+12
-1
lines changed

1 file changed

+12
-1
lines changed

articles/defender-for-iot/organizations/release-notes.md

Lines changed: 12 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -70,8 +70,19 @@ Defender for IoT provides **1 year of support** for every new version, starting
7070

7171
Earlier versions use a legacy support model, with support dates [detailed for each version](#on-premises-monitoring-software-versions).
7272

73+
### On-premises appliance security
74+
75+
The OT network sensor and the on-premises management console are designed as a *locked-down* security appliance with a hardened attack surface. Appliance access and control is allowed only through the management port, via HTTP for web access and SSH for the support shell.
76+
77+
Defender for IoT adheres to the [Microsoft Security Development Lifecycle](https://www.microsoft.com/securityengineering/sdl/) throughout the entire development lifecycle, including activities like training, compliance, code reviews, threat modeling, design requirements, component governance, and pen testing. All appliances are locked down according to industry best practices and should not be modified.
78+
79+
Maintain your sensors and on-premises management consoles, for activities like backups, log exports, or health monitoring, via the web interface, or the Defender for IoT CLI commands.
80+
81+
82+
83+
7384
> [!IMPORTANT]
74-
> Manual changes to software packages may have detrimental effects on the sensor and on-premises management console. Microsoft is unable to support deployments with manual changes made to software packages.
85+
> Manual changes to software packages or additions of external packages may have detrimental security or functional effects on the sensor and on-premises management console. Microsoft is unable to support deployments with manual changes made to software packages.
7586
>
7687
7788
### Feature documentation per versions

0 commit comments

Comments
 (0)