You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-for-identity/deploy/prerequisites-sensor-version-3.md
+11-11Lines changed: 11 additions & 11 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -6,7 +6,7 @@ ms.topic: install-set-up-deploy
6
6
ms.reviewer: rlitinsky
7
7
---
8
8
9
-
# Microsoft Defender for Identity sensor v3.x prerequisites (Preview)
9
+
# Microsoft Defender for Identity sensor v3.x prerequisites
10
10
11
11
This article describes the requirements for installing the Microsoft Defender for Identity sensor v3.x.
12
12
@@ -35,13 +35,13 @@ For more information, see [Licensing and privacy FAQs](/defender-for-identity/te
35
35
-`System settings (Read and manage)`
36
36
-`Security settings (All permissions)`
37
37
38
-
## Sensor requirements and recommendations
38
+
## Sensor requirements and recommendations
39
39
40
40
The following table summarizes the server requirements and recommendations for the Defender for Identity sensor.
41
41
42
42
|Prerequisite / Recommendation |Description |
43
43
|---------|---------|
44
-
|Operating System|The domain controller must have both:<br> - Windows Server 2019 or later<br> - [June 2025 Cumulative Update](https://support.microsoft.com/en-us/topic/june-10-2025-kb5060526-os-build-20348-3807-4e9453c4-6602-48ea-b349-689cd66dfdb9) or later.|
44
+
|Operating System|The domain controller must have both:<br> - Windows Server 2019 or later<br> - [October 2025 Cumulative Update](https://support.microsoft.com/en-us/topic/october-14-2025-kb5066782-os-build-20348-4294-f4af3c9e-7a60-4d17-a964-cfe1f1dd15f6) or later.|
45
45
|Previous installations| Before activating the sensor on a domain controller, make sure that the domain controller doesn't have Defender for Identity sensor V2.x already deployed.|
46
46
|Specifications| A domain controller server with a minimum of:<br> - two cores<br>- 6 GB of RAM|
47
47
|Performance| For optimal performance, set the **Power Option** of the machine running the Defender for Identity sensor to **High Performance**. |
@@ -63,18 +63,18 @@ The following table describes memory requirements on the server used for the Def
63
63
> [!IMPORTANT]
64
64
> When running as a virtual machine, all memory must be allocated to the virtual machine at all times.
65
65
66
-
## Configure Unified Sensor to support advanced identity detections (Preview)
66
+
## Configure Unified Sensor to support advanced identity detections
67
67
68
68
Applying the **Unified Sensor RPC Audit** tag enables a new, tested capability on the machine, improving security visibility and unlocking additional identity detections. Once applied, the configuration is enforced on **existing and future devices** that match the rule criteria. The tag itself is visible in the Device Inventory, providing admins with transparency and auditing capabilities.
69
69
70
70
**Steps to apply the configuration:**
71
71
72
72
1. In the **Microsoft Defender portal**, navigate to: **System > Settings > Microsoft Defender XDR > Asset Rule Management**.
73
-
1. Select **Create a new rule**
73
+
1. Select **Create a new rule**.
74
74
75
-

75
+

76
76
77
-
3. In the side panel:
77
+
1. In the side panel:
78
78
79
79
1. Enter a **Rule name** and **Description**.
80
80
@@ -86,17 +86,17 @@ Applying the **Unified Sensor RPC Audit** tag enables a new, tested capability o
86
86
87
87
1.**Add the tag**`Unified Sensor RPC Audit` to the selected devices.
88
88
89
-

89
+

90
90
91
-
5. Select **Next** to review and finish creating the rule and then select **Submit**.
91
+
1. Select **Next** to review and finish creating the rule and then select **Submit**.
92
92
93
93
### Updating rules
94
94
Offboarding a device from this configuration can be done **only** from **deleting the asset rule** or **modifying the rule conditions** so the device no longer matches.
95
95
96
-
>[!NOTE]
96
+
>[!NOTE]
97
97
> It may take up to 1 hour for changes to be reflected in the portal.
98
98
99
-
Learn more about Asset Management Rule [here](/defender-xdr/configure-asset-rules)
99
+
Learn more about Asset Management Rule [here](/defender-xdr/configure-asset-rules).
Copy file name to clipboardExpand all lines: defender-for-identity/whats-new.md
+5-1Lines changed: 5 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -23,6 +23,10 @@ For more information, see also:
23
23
24
24
For updates about versions and features released six months ago or earlier, see the [What's new archive for Microsoft Defender for Identity](whats-new-archive.md).
25
25
26
+
## October 2025
27
+
We’re excited to announce that the Microsoft Defender for Identity Unified Sensor (v3.x) is now generally available (GA).
28
+
The [unified sensor](/defender-for-identity/deploy/activate-sensor) provides enhanced coverage, improved performance across your environment and offering easier deployment and management for domain controllers.
29
+
26
30
## September 2025
27
31
28
32
### Unlock additional security value in the unified agent (Preview)
@@ -37,7 +41,7 @@ For more information, see [Investigate users in Microsoft Defender XDR](/microso
37
41
Defender for Identity data centers are now also deployed in the United Arab Emirates, North and Central regions. For the most current list of regional deployments, see [Defender for Identity data locations](/defender-for-identity/privacy-compliance/#data-location).
38
42
39
43
40
-
### New API support for unified agent
44
+
### New API support for unified agent (preview)
41
45
We are excited to announce the availability of a new Graph-based API for managing unified agent server actions in Microsoft Defender for Identity.
42
46
This capability is currently in preview and available in API Beta version.
0 commit comments