Skip to content

Commit 02d41b7

Browse files
authored
Mino changesModify author and date in device control policies doc
Minor formatting changes to authors update. Updated author and date information in the document.
1 parent 5c490dc commit 02d41b7

File tree

1 file changed

+4
-4
lines changed

1 file changed

+4
-4
lines changed

defender-endpoint/device-control-policies.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,10 +1,10 @@
11
---
22
title: Device control policies in Microsoft Defender for Endpoint
33
description: Learn about Device control policies in Defender for Endpoint
4-
author: batamig
5-
ms.author: bagol
4+
author: paulinbar
5+
ms.author: painbar
66
manager: bagol
7-
ms.date: 02/05/2025
7+
ms.date: 10/23/2025
88
ms.topic: overview
99
ms.service: defender-endpoint
1010
ms.subservice: asr
@@ -188,7 +188,7 @@ Device control policies define access (called an entry) for a set of devices. En
188188

189189
| Entry setting | Options |
190190
|---|---|
191-
| AccessMask | Applies the action only if the access operations match the access mask - The access mask is the bit-wise OR of the access values:<br><br>1 - Device Read - Allows inspection of device-level metadata and mounting. Allows ability to view files<br>2 - Device Write - Grants ability to format or reconfigure the device. <br>4 - Device Execute - Allows renaming the USB in Explorer (a form of execution at the system level). <br>8 - File Read - Enables viewing and browsing of stored content on the external device<br>16 - File Write - Permits editing, copying, or deleting files and folders on the external device<br>32 - File Execute - Enables launching of executable content from the external device<br>64 - Print<br><br>For example:<br>Device Read, Write, and Execute = 7 (1+2+4)<br>Device Read, Disk Read = 9 (1+8)<br>|
191+
| AccessMask | Applies the action only if the access operations match the access mask - The access mask is the bit-wise OR of the access values:<br><br>1 - Device Read - Allows inspection of device-level metadata and mounting. Allows ability to view files.<br>2 - Device Write - Grants ability to format or reconfigure the device.<br>4 - Device Execute - Allows renaming the USB in Explorer (a form of execution at the system level).<br>8 - File Read - Enables viewing and browsing of stored content on the external device.<br>16 - File Write - Permits editing, copying, or deleting files and folders on the external device.<br>32 - File Execute - Enables launching of executable content from the external device.<br>64 - Print<br><br>For example:<br>Device Read, Write, and Execute = 7 (1+2+4)<br>Device Read, Disk Read = 9 (1+8)<br>|
192192
| Action | Allow <br/> Deny <br/> AuditAllow <br/> AuditDeny |
193193
| Notification | None (default) <br/> An event is generated <br/> The user receives notification <br/> |
194194

0 commit comments

Comments
 (0)