You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-xdr/portal-submission-troubleshooting.md
+18-15Lines changed: 18 additions & 15 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -13,7 +13,7 @@ ms.collection:
13
13
- tier2
14
14
ms.topic: conceptual
15
15
search.appverid: met150
16
-
ms.date: 03/18/2022
16
+
ms.date: 06/28/2024
17
17
---
18
18
19
19
# Troubleshooting Microsoft Security intelligence malware submission errors caused by administrator block
@@ -24,16 +24,21 @@ In some instances, an administrator block might cause submission issues when you
24
24
25
25
Open your Azure [Enterprise application settings](https://portal.azure.com/#blade/Microsoft_AAD_IAM/StartboardApplicationsMenuBlade/UserSettings/menuId/). Under **Enterprise Applications** > **Users can consent to apps accessing company data on their behalf**, check whether Yes or No is selected.
26
26
27
-
- If **No** is selected, a Microsoft Entra administrator for the customer tenant will need to provide consent for the organization. Depending on the configuration with Microsoft Entra ID, users might be able to submit a request right from the same dialog box. If there's no option to ask for admin consent, users need to request for these permissions to be added to their Microsoft Entra admin. Go to the following section for more information.
27
+
- If **No** is selected, a Microsoft Entra administrator for the customer tenant needs to provide consent for the organization. Depending on the configuration with Microsoft Entra ID, users might be able to submit a request right from the same dialog box. If there's no option to ask for admin consent, users need to request for these permissions to be added to their Microsoft Entra admin. Go to the following section for more information.
28
28
29
-
- If **Yes** is selected, ensure the Windows Defender Security Intelligence app setting **Enabled for users to sign in?** is set to **Yes**[in Azure](https://portal.azure.com/#blade/Microsoft_AAD_IAM/ManagedAppMenuBlade/Properties/appId/f0cf43e5-8a9b-451c-b2d5-7285c785684d/objectId/4a918a14-4069-4108-9b7d-76486212d75d). If **No** is selected, you'll need to request a Microsoft Entra admin enable it.
29
+
- If **Yes** is selected, ensure the Windows Defender Security Intelligence app setting **Enabled for users to sign in?** is set to **Yes**[in Azure](https://portal.azure.com/#blade/Microsoft_AAD_IAM/ManagedAppMenuBlade/Properties/appId/f0cf43e5-8a9b-451c-b2d5-7285c785684d/objectId/4a918a14-4069-4108-9b7d-76486212d75d). If **No** is selected, you need to request a Microsoft Entra admin enable it.
This process requires a global or application admin in the tenant.
33
+
> [!IMPORTANT]
34
+
> Microsoft recommends that you use roles with the fewest permissions. This helps improve security for your organization. Global Administrator is a highly privileged role that should be limited to emergency scenarios when you can't use an existing role.
35
+
36
+
This process requires a Global Administrator or Application Administrator in the tenant.
34
37
35
38
1. Open [Enterprise Application settings](https://portal.azure.com/#blade/Microsoft_AAD_IAM/ManagedAppMenuBlade/Permissions/appId/f0cf43e5-8a9b-451c-b2d5-7285c785684d/objectId/4a918a14-4069-4108-9b7d-76486212d75d).
39
+
36
40
2. Select **Grant admin consent for organization**.
41
+
37
42
3. If you're able to do so, review the API permissions required for this application, as the following image shows. Provide consent for the tenant.
@@ -42,10 +47,7 @@ This process requires a global or application admin in the tenant.
42
47
43
48
## Option 1 Approve enterprise application permissions by user request
44
49
45
-
> [!NOTE]
46
-
> This is currently a preview feature.
47
-
48
-
Microsoft Entra admins will need to allow for users to request admin consent to apps. Verify the setting is configured to **Yes** in [Enterprise applications](https://portal.azure.com/#blade/Microsoft_AAD_IAM/StartboardApplicationsMenuBlade/UserSettings/menuId/).
50
+
Microsoft Entra Administrators need to allow for users to request admin consent to apps. Verify the setting is configured to **Yes** in [Enterprise applications](https://portal.azure.com/#blade/Microsoft_AAD_IAM/StartboardApplicationsMenuBlade/UserSettings/menuId/).
49
51
50
52

51
53
@@ -55,19 +57,19 @@ Once this setting is verified, users can go through the enterprise customer sign
55
57
56
58

57
59
58
-
Admin will be able to review and approve the application permissions [Azure admin consent requests](https://portal.azure.com/#blade/Microsoft_AAD_IAM/StartboardApplicationsMenuBlade/AccessRequests/menuId/).
60
+
Administrators can review and approve the application permissions [Azure admin consent requests](https://portal.azure.com/#blade/Microsoft_AAD_IAM/StartboardApplicationsMenuBlade/AccessRequests/menuId/).
59
61
60
62
After providing consent, all users in the tenant will be able to use the application.
61
63
62
64
## Option 2 Provide admin consent by authenticating the application as an admin
63
65
64
-
This process requires that global admins go through the Enterprise customer sign-in flow at [Microsoft security intelligence](https://www.microsoft.com/wdsi/filesubmission).
66
+
This process requires that Global Administrators go through the Enterprise customer sign-in flow at [Microsoft security intelligence](https://www.microsoft.com/wdsi/filesubmission).
65
67
66
68

67
69
68
70
Then, admins review the permissions and make sure to select **Consent on behalf of your organization**, and then select **Accept**.
69
71
70
-
All users in the tenant will now be able to use this application.
72
+
All users in the tenant can now use this application.
2. Capture TenantID from [Properties](https://portal.azure.com/#blade/Microsoft_AAD_IAM/ActiveDirectoryMenuBlade/Properties).
83
+
2. Capture `TenantID` from [Properties](https://portal.azure.com/#blade/Microsoft_AAD_IAM/ActiveDirectoryMenuBlade/Properties).
84
+
85
+
3. Replace `{tenant-id}` with the specific tenant that needs to grant consent to this application in the URL below. Copy the following URL into browser: `https://login.microsoftonline.com/{tenant-id}/v2.0/adminconsent?client_id=f0cf43e5-8a9b-451c-b2d5-7285c785684d&state=12345&redirect_uri=https%3a%2f%2fwww.microsoft.com%2fwdsi%2ffilesubmission&scope=openid+profile+email+offline_access`
82
86
83
-
3. Replace {tenant-id} with the specific tenant that needs to grant consent to this application in the URL below. Copy this URL into browser. The rest of the parameters are already completed.
6. Sign in to [Microsoft security intelligence](https://www.microsoft.com/wdsi/filesubmission) as an enterprise user with a non-admin account to see if you have access.
95
98
96
-
If the warning is not resolved after following these troubleshooting steps, call Microsoft support.
99
+
If the warning isn't resolved after following these troubleshooting steps, call Microsoft support.
Copy file name to clipboardExpand all lines: defender-xdr/setup-m365deval.md
+28-67Lines changed: 28 additions & 67 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -15,7 +15,7 @@ ms.collection:
15
15
- highpri
16
16
- tier1
17
17
ms.topic: conceptual
18
-
ms.date: 02/17/2021
18
+
ms.date: 06/28/2024
19
19
---
20
20
21
21
# Set up your Microsoft Defender XDR trial in a lab environment
@@ -25,113 +25,74 @@ ms.date: 02/17/2021
25
25
**Applies to:**
26
26
- Microsoft Defender XDR
27
27
28
-
This topic guides you to set up a dedicated lab environment. For information on setting up a trial in production, see the new [Pilot and deploy Microsoft Defender XDR](pilot-deploy-overview.md) guide.
28
+
This article guides you to set up a dedicated lab environment. For information on setting up a trial in production, see the new [Pilot and deploy Microsoft Defender XDR](pilot-deploy-overview.md) guide.
29
29
30
-
## Create an Office 365 E5 trial tenant
30
+
> [!IMPORTANT]
31
+
> Microsoft recommends that you use roles with the fewest permissions. This helps improve security for your organization. Global Administrator is a highly privileged role that should be limited to emergency scenarios when you can't use an existing role.
31
32
32
-
> [!NOTE]
33
-
> If you already have an existing Office 365 or Microsoft Entra subscription, you can skip the Office 365 E5 trial tenant creation steps.
34
-
35
-
1. Go to the [Office 365 E5 product portal](https://www.microsoft.com/microsoft-365/business/office-365-enterprise-e5-business-software?activetab=pivot%3aoverviewtab) and select **Free trial**.
> If you already have an existing Microsoft 365 or Microsoft Entra subscription, you can skip the Microsoft 365 E5 trial tenant creation steps.
38
37
39
-
2. Complete the trial registration by entering your email address (personal or corporate). Click **Set up account**.
38
+
1. Go to the [Microsoft 365 E5 product portal](https://www.microsoft.com/microsoft-365/business/office-365-enterprise-e5-business-software?activetab=pivot%3aoverviewtab) and select **Free trial**.
5. Set the custom domain name for your tenant, then click **Next**.
45
+
> The country or region you set here determines the data center region your Microsoft 365 will be hosted.
55
46
56
-
:::image type="content" source="/defender/media/mtp-eval-13.png" alt-text="The Office 365 E5 trial registration setup page where you can set up your custom domain name" lightbox="/defender/media/mtp-eval-13.png":::
47
+
4. Choose your verification preference: through a text message or call. Select **Send Verification Code**.
57
48
58
-
6. Set up the first identity, which will be a Global Administrator for the tenant. Fill in**Name** and **Password**. Click **Sign up**.
49
+
5. Set the custom domain name for your tenant, then select**Next**.
59
50
60
-
:::image type="content" source="/defender/media/mtp-eval-14.png" alt-text="The Office 365 E5 trial registration setup page where you can set your business identity" lightbox="/defender/media/mtp-eval-14.png":::
51
+
6. Set up the first identity, which is a Global Administrator for the tenant. Fill in **Name** and **Password**. Select **Sign up**.
61
52
62
-
7.Click**Go to Setup** to complete the Office 365 E5 trial tenant provisioning.
53
+
7.Select**Go to Setup** to complete the Microsoft 365 E5 trial tenant provisioning.
63
54
64
-
:::image type="content" source="/defender/media/mtp-eval-15.png" alt-text="The Office 365 E5 trial registration setup page prompting to click Go to Setup button" lightbox="/defender/media/mtp-eval-15.png":::
65
-
66
-
8. Connect your corporate domain to the Office 365 tenant. [Optional] Choose **Connect a domain you already own** and type in your domain name. Click **Next**.
67
-
68
-
:::image type="content" source="/defender/media/mtp-eval-16.png" alt-text="The Office 365 E5 Setup page where you should personalize your sign-in and email" lightbox="/defender/media/mtp-eval-16.png":::
55
+
8. Connect your corporate domain to the Microsoft 365 tenant. [Optional] Choose **Connect a domain you already own** and type in your domain name. Select **Next**.
69
56
70
57
9. Add a TXT or MX record to validate the domain ownership. Once you've added the TXT or MX record to your domain, select **Verify**.
71
58
72
-
:::image type="content" source="/defender/media/mtp-eval-17.png" alt-text="The Office 365 E5 setup page where you should add a TXT of MX record to verify your domain" lightbox="/defender/media/mtp-eval-17.png":::
73
-
74
59
10.[Optional] Create more user accounts for your tenant. You can skip this step by clicking **Next**.
75
60
76
-
:::image type="content" source="/defender/media/mtp-eval-18.png" alt-text="The Office 365 E5 setup page where you can add more users" lightbox="/defender/media/mtp-eval-18.png":::
77
-
78
-
11.[Optional] Download Office apps. Click **Next** to skip this step.
79
-
80
-
:::image type="content" source="/defender/media/mtp-eval-19.png" alt-text="The Office 365 E5 page where you can install your Office apps" lightbox="/defender/media/mtp-eval-19.png":::
61
+
11.[Optional] Download Office apps. Select **Next** to skip this step.
81
62
82
63
12.[Optional] Migrate email messages. Again, you can skip this step.
83
64
84
-
:::image type="content" source="/defender/media/mtp-eval-20.png" alt-text="The Office 365 E5 where you can set whether to migrate email messages or not" lightbox="/defender/media/mtp-eval-20.png":::
85
-
86
-
13. Choose online services. Select **Exchange** and click **Next**.
87
-
88
-
:::image type="content" source="/defender/media/mtp-eval-21.png" alt-text="The Office 365 E5 where you can choose your online services" lightbox="/defender/media/mtp-eval-21.png":::
65
+
13. Choose online services. Select **Exchange** and select **Next**.
89
66
90
67
14. Add MX, CNAME, and TXT records to your domain. When completed, select **Verify**.
91
68
92
-
:::image type="content" source="/defender/media/mtp-eval-22.png" alt-text="The Office 365 E5 here you can add your DNS records" lightbox="/defender/media/mtp-eval-22.png":::
93
-
94
-
15. Congratulations, you have completed the provisioning of your Office 365 tenant.
Congratulations! You have completed the provisioning of your Microsoft 365 tenant.
97
70
98
-
## Enable Microsoft 365 trial subscription
71
+
## Enable your Microsoft 365 trial subscription
99
72
100
73
> [!NOTE]
101
74
> Signing up for a trial gives you 25 user licenses to use for a month. See [Try or buy a Microsoft 365 subscription](/microsoft-365/commerce/try-or-buy-microsoft-365) for details.
102
75
103
-
1. From [Microsoft 365 Admin Center](https://admin.microsoft.com/), click**Billing** and then navigate to **Purchase services**.
76
+
1. From [Microsoft 365 Admin Center](https://admin.microsoft.com/), select**Billing** and then navigate to **Purchase services**.
104
77
105
-
2. Select **Microsoft 365 E5** and click **Start free trial**.
2. Select **Microsoft 365 E5** and select **Start free trial**.
108
79
109
80
3. Choose your verification preference: through a text message or call. Once you have decided, enter the phone number, select **Text me** or **Call me** depending on your selection.
110
81
111
-
:::image type="content" source="/defender/media/mtp-eval-25.png" alt-text="The Microsoft 365 E5 Start free trial page asking for contact details to send code to prove you are not a robot" lightbox="/defender/media/mtp-eval-25.png":::
112
-
113
-
4. Enter the verification code and click **Start your free trial**.
114
-
115
-
:::image type="content" source="/defender/media/mtp-eval-26.png" alt-text="The Microsoft 365 E5 Start free trial page where you can fill out verification code the system sent to prove you are not a robot" lightbox="/defender/media/mtp-eval-26.png":::
82
+
4. Enter the verification code and select **Start your free trial**.
116
83
117
-
5.Click**Try now** to confirm your Microsoft 365 E5 trial.
84
+
5.Select**Try now** to confirm your Microsoft 365 E5 trial.
118
85
119
-
:::image type="content" source="/defender/media/mtp-eval-27.png" alt-text="The Microsoft 365 E5 Start free trial page where you should clock the Try now button to start" lightbox="/defender/media/mtp-eval-27.png":::
86
+
6. Go to the **Microsoft 365 Admin Center** > **Users** > **Active users**. Select your user account, select **Manage product licenses**, and then assign the Microsoft 365 E5 license. Then select **Save**.
120
87
121
-
6. Go to the **Microsoft 365 Admin Center** > **Users** > **Active users**. Select your user account, select **Manage product licenses**, then swap the license from Office 365 E5 to **Microsoft 365 E5**. Click **Save**.
88
+
7. Select the Global Administrator account again then select **Manage username**.
122
89
123
-
:::image type="content" source="/defender/media/mtp-eval-28.png" alt-text="The Microsoft 365 Admin Center page where you can select the Microsoft 365 E5 license" lightbox="/defender/media/mtp-eval-28.png":::
124
-
125
-
7. Select the global administrator account again then click **Manage username**.
126
-
127
-
:::image type="content" source="/defender/media/mtp-eval-29.png" alt-text="The Microsoft 365 Admin Center page where you can select Account and Manage username" lightbox="/defender/media/mtp-eval-29.png":::
128
-
129
-
8.[Optional] Change the domain from *onmicrosoft.com* to your own domain—depending on what you chose on the previous steps. Click **Save changes**.
130
-
131
-
:::image type="content" source="/defender/media/mtp-eval-30.png" alt-text="The Microsoft 365 Admin Center page where you can change your domain preference" lightbox="/defender/media/mtp-eval-30.png":::
90
+
8.[Optional] Change the domain from *onmicrosoft.com* to your own domain—depending on what you chose on the previous steps. Select **Save changes**.
132
91
133
92
## Next step
134
93
135
94
|[Phase 3: Configure & Onboard](pilot-deploy-overview.md) | Configure each Microsoft Defender XDR pillar for your Microsoft Defender XDR trial lab or pilot environment and onboard your endpoints.
0 commit comments