Skip to content

Commit 359b426

Browse files
authored
Merge branch 'public' into patch-5
2 parents d8e7730 + b804b3d commit 359b426

File tree

2 files changed

+13
-3
lines changed

2 files changed

+13
-3
lines changed

defender-xdr/mto-overview.md

Lines changed: 10 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ ms.collection:
1313
- tier1
1414
- usx-security
1515
ms.topic: conceptual
16-
ms.date: 08/19/2024
16+
ms.date: 09/30/2024
1717
appliesto:
1818
- Microsoft Defender XDR
1919
- Microsoft Sentinel in the Microsoft Defender portal
@@ -37,6 +37,12 @@ For more information, see:
3737
- [Connect Microsoft Sentinel to Microsoft Defender XDR](microsoft-sentinel-onboard.md)
3838
- [Multitenant organizations documentation](/azure/active-directory/multi-tenant-organizations/)
3939

40+
Multitenant management is also available to US government customers. Refer to the table below for specific scenarios for GCC, GCC High, DoD, and Commercial customers.
41+
42+
| Scenario | Availability |
43+
| ------ | ------ |
44+
|Multitenant management | Available to all GCC, GCC High, DoD, and Commercial customers.|
45+
|Cross cloud collaboration| - Both DoD and GCC High customers can manage tenants in each other's clouds. </br></br> - GCC customers can manage tenants in the Commercial cloud. |
4046

4147
## Benefits of multitenant management
4248

@@ -65,6 +71,9 @@ The following key capabilities are available for each tenant you have access to
6571
|**Endpoints** > **Vulnerability management** > **Tenants** |For all tenants and at a tenant-specific level, explore vulnerability management information across different values such as exposed devices, security recommendations, weaknesses, and critical CVEs. |
6672
|**Configuration** > **Settings**|Lists the tenants you have access to. Use this page to view and manage your tenants.|
6773

74+
> [!NOTE]
75+
> The content distribution capability is not yet available for all GCC, GCC High, and DoD customers.
76+
6877
## Next steps
6978

7079
- [Set up Microsoft Defender multitenant management](mto-requirements.md)

defender-xdr/mto-requirements.md

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ This article describes the steps you need to take to start using multitenant man
2828
3. [Set up Microsoft Defender multitenant management](#set-up-multitenant-management)
2929

3030
>[!Note]
31-
>- In multi-tenant management, interactions between the multi-tenant user and the managed tenants could involve accessing data and managing configurations. The ability to undertake these actions is determined by the permissions a managed tenant has granted the multi-tenant user.
31+
>- In multitenant management, interactions between the multitenant user and the managed tenants could involve accessing data and managing configurations. The ability to undertake these actions is determined by the permissions a managed tenant has granted the multitenant user.
3232
>- [Data privacy](data-privacy.md), [role-based access control (RBAC)](m365d-permissions.md) and [Licensing](prerequisites.md#licensing-requirements) are respected by Microsoft Defender multi-tenant management.
3333
3434
## Review the requirements
@@ -38,6 +38,7 @@ The following table lists the basic requirements you need to use multitenant man
3838
| Requirement | Description |
3939
|:---|:---|
4040
| Microsoft Defender XDR prerequisites | Verify you meet the [Microsoft Defender XDR prerequisites](prerequisites.md)|
41+
| Microsoft Defender XDR for US Government customers | Check if you have the following applicable [licensing requirements](usgov.md#licensing-requirements)|
4142
| Multitenant access | To view and manage the data you have access to in multitenant management, you need to ensure you have the necessary access. For each tenant you want to view and manage, you need to have either: <br/> <br/> - [Granular delegated admin privileges (GDAP)](/partner-center/gdap-introduction) <br/> - [Microsoft Entra B2B authentication](/azure/active-directory/external-identities/what-is-b2b) <br/> <br/> To learn more about how to synchronize multiple B2B users across tenants, see [Configure cross-tenant synchronization](/azure/active-directory/multi-tenant-organizations/cross-tenant-synchronization-configure).|
4243
| Permissions | Users must be assigned the correct roles and permissions at the individual tenant level, in order to view and manage the associated data in multitenant management. To learn more, see: <br/><br/> - [Manage access to Microsoft Defender XDR with Microsoft Entra global roles](./m365d-permissions.md) <br/> - [Custom roles in role-based access control for Microsoft Defender XDR](./custom-roles.md)<br/><br/> To learn how to grant permissions for multiple users at scale, see [What is entitlement management](/azure/active-directory/governance/entitlement-management-overview).|
4344
| Security information and event management (SIEM) data (Optional) |To include SIEM data with the extended detection and response (XDR) data, one or more tenants must include a Microsoft Sentinel workspace onboarded to the Microsoft unified security operations platform. For more information, see [Connect Microsoft Sentinel to Microsoft Defender XDR](microsoft-sentinel-onboard.md).<br/><br/>Only one Microsoft Sentinel workspace per tenant is currently supported in the unified security operations platform. So in Microsoft Defender multitenant management, you have SIEM data from one Microsoft Sentinel workspace per tenant.<br/><br/> Access to Microsoft Sentinel data is available through [Microsoft Entra B2B authentication](/azure/active-directory/external-identities/what-is-b2b). Microsoft Sentinel doesn't support [granular delegated admin privileges (GDAP)](/partner-center/gdap-introduction) at this time. |
@@ -81,7 +82,7 @@ The first time you use Microsoft Defender multitenant management, you need setup
8182
3. Choose the tenants you want to manage and select **Add**
8283

8384
>[!Note]
84-
> The Microsoft Defender multi-tenant view currently has a limit of 50 target tenants.
85+
> The Microsoft Defender multitenant view currently has a limit of 50 target tenants.
8586
8687
The features available in multitenant management now appear on the navigation bar and you're ready to view and manage security data across all your tenants.
8788

0 commit comments

Comments
 (0)