You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/mac-install-with-intune.md
+24-38Lines changed: 24 additions & 38 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -405,20 +405,19 @@ For more information, see [Set preferences for Microsoft Defender for Endpoint o
405
405
For more information about managing security settings, see:
406
406
407
407
-[Manage Microsoft Defender for Endpoint on devices with Microsoft Intune](/mem/intune/protect/mde-security-integration?pivots=mdssc-ga)
408
-
409
408
-[Manage security settings for Windows, macOS, and Linux natively in Defender for Endpoint](https://techcommunity.microsoft.com/t5/microsoft-defender-for-endpoint/manage-security-settings-for-windows-macos-and-linux-natively-in/ba-p/3870617)
410
409
411
410
### Step 10: Network protection for Microsoft Defender for Endpoint on macOS (optional)
412
411
413
-
> [!NOTE]
414
-
> The **Network protection** setting is included in the **Microsoft Defender Antivirus** template created in step 9.
415
-
> For more information about Network Protection for Microsoft Defender for Endpoint on MacOS see [Network protection for MacOS](/defender-endpoint/network-protection-macos)
412
+
The **Network protection** setting is included in the **Microsoft Defender Antivirus** template created in step 9.
413
+
414
+
For more information about Network Protection for Microsoft Defender for Endpoint on MacOS see [Network protection for MacOS](/defender-endpoint/network-protection-macos)
416
415
417
416
### Step 11: Device Control for Microsoft Defender for Endpoint on macOS (optional)
418
417
419
-
> [!NOTE]
420
-
> The Device Control setting is included in the MacOS Full disk access template created in step 3.
421
-
> For more information about Device Control for Microsoft Defender for Endpoint on macOS see [Device Control for MacOS](/defender-endpoint/mac-device-control-overview)
418
+
The Device Control setting is included in the MacOS Full disk access template created in step 3.
419
+
420
+
For more information about Device Control for Microsoft Defender for Endpoint on macOS see [Device Control for MacOS](/defender-endpoint/mac-device-control-overview)
422
421
423
422
### Step 12: Publish the Microsoft Defender application
424
423
@@ -464,25 +463,25 @@ To download the onboarding package from the Microsoft Defender portal:
464
463
465
464
1. On the **Deployment method** drop-down, select **Mobile Device Management / Microsoft Intune**.
466
465
467
-
:::image type="content" source="../defender-endpoint/media/macos-install-with-intune.png" alt-text="Screenshot that shows the Onboarding settings page." lightbox="../defender-endpoint/media/macos-install-with-intune.png":::
466
+
:::image type="content" source="../defender-endpoint/media/macos-install-with-intune.png" alt-text="Screenshot that shows the Onboarding settings page." lightbox="../defender-endpoint/media/macos-install-with-intune.png":::
468
467
469
468
3. Select **Download onboarding package**. Save it as _WindowsDefenderATPOnboardingPackage.zip_ to the same directory.
470
469
471
470
1. Extract the contents of the .zip file:
472
471
473
-
```bash
472
+
```bash
474
473
unzip WindowsDefenderATPOnboardingPackage.zip
475
474
```
476
475
477
-
```console
476
+
```console
478
477
Archive: WindowsDefenderATPOnboardingPackage.zip
479
478
warning: WindowsDefenderATPOnboardingPackage.zip appears to use backslashes as path separators
:::image type="content" source="../defender-endpoint/media/deploy-onboarding-package.png" alt-text="Screenshot that shows the sample description." lightbox="../defender-endpoint/media/deploy-onboarding-package.png":::
484
+
:::image type="content" source="../defender-endpoint/media/deploy-onboarding-package.png" alt-text="Screenshot that shows the sample description." lightbox="../defender-endpoint/media/deploy-onboarding-package.png":::
486
485
487
486
### Step 14: Deploy the Microsoft Defender for Endpoint onboarding package for MacOS
488
487
@@ -514,8 +513,6 @@ This profile contains license information for Microsoft Defender for Endpoint.
514
513
515
514
### Step 15: Check Device and Configuration status
516
515
517
-
518
-
519
516
#### Step 15a. View Status
520
517
521
518
There are multiple ways to look at this information in the [Microsoft Intune admin center](https://intune.microsoft.com/#home), including monitoring and reports per device, user, configuration policies and more. Here's an example:
@@ -526,21 +523,19 @@ There are multiple ways to look at this information in the [Microsoft Intune adm
526
523
527
524
#### Step 15b. Client device setup
528
525
529
-
530
-
531
526
1. Follow the steps outlined in [Enroll your macOS device using the Company Portal app](/mem/intune/user-help/enroll-your-device-in-intune-macos-cp)
532
527
533
528
1. Confirm device management.
534
529
535
-

530
+

536
531
537
-
Select **Open System Preferences**, locate **Management Profile** on the list, and select **Approve...**. Your Management Profile would be displayed as **Verified**:
532
+
2.Select **Open System Preferences**, locate **Management Profile** on the list, and select **Approve...**. Your Management Profile would be displayed as **Verified**:
538
533
539
-

534
+

540
535
541
536
1. Select **Continue** and complete the enrollment.
542
537
543
-
You might now enroll more devices. You can also enroll them later, after finishing the provisioning system configuration and application packages.
538
+
You might now enroll more devices. You can also enroll them later, after finishing the provisioning system configuration and application packages.
544
539
545
540
1. In Intune, select **Devices** > **All devices**. Here you can see your device among the listed:
546
541
@@ -552,23 +547,15 @@ You might now enroll more devices. You can also enroll them later, after finishi
552
547
553
548
1. Verify that all the configuration profiles are present and installed:
554
549
555
-
1. accessibility.mobileconfig
556
-
557
-
1. background_services.mobileconfig
558
-
559
-
1. bluetooth.mobileconfig
560
-
561
-
1. com.microsoft.autoupdate2.mobileconfig
562
-
563
-
1. fulldisk.mobileconfig
564
-
565
-
1. Management Profile (this is the Intune system profile)
566
-
567
-
1. WindowsDefenderATPOnboarding.xml (this is the MDE onboarding package for macOS)
568
-
569
-
1. netfilter.mobileconfig
570
-
571
-
1. notif.mobileconfig
550
+
-`accessibility.mobileconfig`
551
+
-`background_services.mobileconfig`
552
+
-`bluetooth.mobileconfig`
553
+
-`com.microsoft.autoupdate2.mobileconfig`
554
+
-`fulldisk.mobileconfig`
555
+
- Management Profile (this is the Intune system profile)
556
+
-`WindowsDefenderATPOnboarding.xml` (this is the Defender for Endpoint onboarding package for macOS)
557
+
-`netfilter.mobileconfig`
558
+
-`notif.mobileconfig`
572
559
573
560
1. You should also see the **Microsoft Defender** icon in the top-right corner.
574
561
@@ -584,7 +571,7 @@ See the following article to test for an EDR detection review: [EDR detection te
584
571
585
572
### Step 18: Microsoft Purview Data Loss Prevention (DLP) for Endpoint on MacOS (strongly recommended)
586
573
587
-
574
+
See [Get started with endpoint data loss prevention](/purview/endpoint-dlp-getting-started).
588
575
589
576
## Troubleshooting
590
577
@@ -604,7 +591,6 @@ For information on troubleshooting procedures, see:
604
591
-[Troubleshoot installation issues for Microsoft Defender for Endpoint on macOS](mac-support-install.md)
605
592
-[Troubleshoot license issues for Microsoft Defender for Endpoint on macOS](mac-support-license.md)
606
593
-[Troubleshoot cloud connectivity issues for Microsoft Defender for Endpoint on macOS](troubleshoot-cloud-connect-mdemac.md)
607
-
608
594
-[Troubleshoot performance issues for Microsoft Defender for Endpoint on macOS](mac-support-perf.md)
0 commit comments