You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/enable-network-protection.md
+23-26Lines changed: 23 additions & 26 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -60,42 +60,39 @@ To enable network protection, you can use any of the methods described in this a
60
60
61
61
6. On the **Settings** page, expand each group of settings, and configure the settings you want to manage with this profile.
62
62
63
-
###Network Protection on Windows clients:
63
+
- Network Protection on Windows clients:
64
64
65
-
| Description| Setting|
66
-
| -------- | -------- |
67
-
| Enable Network Protection|Options:<br>- Enabled (block mode) Block mode is needed to block IP address/URL indicators and Web Content Filtering.<br>- Enabled (audit mode) <br>- Disabled (Default) <br>- Not Configured|
65
+
| Description| Setting|
66
+
| -------- | -------- |
67
+
| Enable Network Protection|Options:<br>- Enabled (block mode) Block mode is needed to block IP address/URL indicators and Web Content Filtering.<br>- Enabled (audit mode) <br>- Disabled (Default) <br>- Not Configured|
68
68
69
-
#### Network Protection on Windows Server 2012 R2 and Windows Server 2016:
69
+
-Network Protection on Windows Server 2012 R2 and Windows Server 2016
70
70
71
-
| Description|Setting|
72
-
| -------- | -------- |
73
-
|Allow Network Protection Down Level|Options:<br>- Network protection will be enabled downlevel. <br>- Network Protection will be disabled downlevel. (Default) <br>- Not Configured|
71
+
| Description|Setting|
72
+
| -------- | -------- |
73
+
|Allow Network Protection Down Level|Options:<br>- Network protection will be enabled downlevel. <br>- Network Protection will be disabled downlevel. (Default) <br>- Not Configured|
74
74
75
-
####Optional Network Protection settings for Windows and Windows Server:
75
+
- Optional Network Protection settings for Windows and Windows Server:
76
76
77
-
> [!WARNING]
78
-
> For Domain Controllers, Windows DNS servers and Microsoft Exchange servers, set the **Allow Datagram Processing On WinServer** to **Datagram processing on Windows Server is disabled**. These roles often generate high volumes of UDP traffic, which can affect network performance and reliability when datagram processing is enabled. Disabling this setting helps maintain network stability and optimize resource usage in demanding environments.
77
+
> [!WARNING]
78
+
> For Domain Controllers, Windows DNS servers and Microsoft Exchange servers, set the **Allow Datagram Processing On WinServer** to **Datagram processing on Windows Server is disabled**. These roles often generate high volumes of UDP traffic, which can affect network performance and reliability when datagram processing is enabled. Disabling this setting helps maintain network stability and optimize resource usage in demanding environments.
79
79
80
-
|Description| Setting|
81
-
| -------- | -------- |
82
-
|Allow Datagram Processing On Win Server|- Datagram processing on Windows Server is enabled. <br>- Datagram processing on Windows Server is disabled (Default). <br>- Not configured|
83
-
|Disable DNS over TCP parsing|- DNS over TCP parsing is disabled. <br>- DNS over TCP parsing is enabled (Default). <br>- Not configured|
84
-
|Disable HTTP parsing|- HTTP parsing is disabled. <br>- HTTP parsing is enabled (Default). <br>- Not configured|
85
-
|Disable SSH parsing|- SSH parsing is disabled. <br>- SSH parsing is enabled (Default). <br>- Not configured|
86
-
|Disable TLS parsing |- TLS parsing is disabled. <br>- TLS parsing is enabled (Default). <br>- Not configured|
87
-
|[Deprecated]Enable DNS Sinkhole|- DNS Sinkhole is disabled. <br>- DNS Sinkhole is enabled. (Default) <br>- Not configured|
80
+
|Description| Setting|
81
+
| -------- | -------- |
82
+
|Allow Datagram Processing On Win Server|- Datagram processing on Windows Server is enabled. <br>- Datagram processing on Windows Server is disabled (Default). <br>- Not configured|
83
+
|Disable DNS over TCP parsing|- DNS over TCP parsing is disabled. <br>- DNS over TCP parsing is enabled (Default). <br>- Not configured|
84
+
|Disable HTTP parsing|- HTTP parsing is disabled. <br>- HTTP parsing is enabled (Default). <br>- Not configured|
85
+
|Disable SSH parsing|- SSH parsing is disabled. <br>- SSH parsing is enabled (Default). <br>- Not configured|
86
+
|Disable TLS parsing |- TLS parsing is disabled. <br>- TLS parsing is enabled (Default). <br>- Not configured|
87
+
|[Deprecated]Enable DNS Sinkhole|- DNS Sinkhole is disabled. <br>- DNS Sinkhole is enabled. (Default) <br>- Not configured|
88
88
89
-
- When you're done configuring settings, select Next.
89
+
7. When you're done configuring settings, select **Next**.
90
90
91
-
- On the Assignments page, select the groups that will receive this profile.
91
+
8. On the **Assignments** page, select the groups that will receive this profile. Then select **Next**.
92
92
93
-
- Select Next.
94
-
95
-
- On the Review + create page, when you're done, select Save.
96
-
97
-
- The new profile is displayed in the list when you select the policy type for the profile you created.
93
+
9. On the **Review + create** page, review the information, and then select **Save**.
98
94
95
+
The new profile is displayed in the list when you select the policy type for the profile you created.
0 commit comments