|
| 1 | +--- |
| 2 | +title: Get started for Enterprise IoT for Microsoft Defender for IoT in the Defender portal |
| 3 | +description: Learn how to set up and start monitoring enterprise IoT devices using Microsoft Defender for IoT in the Microsoft Defender portal. |
| 4 | +ms.service: defender-for-iot |
| 5 | +author: limwainstein |
| 6 | +ms.author: lwainstein |
| 7 | +ms.localizationpriority: medium |
| 8 | +ms.date: 08/25/2024 |
| 9 | +ms.topic: how-to |
| 10 | +--- |
| 11 | + |
| 12 | +# Get started with enterprise IoT |
| 13 | + |
| 14 | +Enterprise IoT security improves the monitoring and protection of the IoT devices in your network, such as printers, smart TVs, Voice over Internet Protocol (VoIP) devices, conferencing systems and purpose-built, proprietary devices. |
| 15 | + |
| 16 | +The security monitoring includes IoT related alerts, vulnerabilities, and recommendations that are integrated with your existing Microsoft Defender for Endpoint data. To understand more about the integration between Defender for Endpoint and Defender for IoT, see [enterprise IoT overview](enterprise-iot.md). |
| 17 | + |
| 18 | +In this article you'll learn how to add enterprise IoT to your Microsoft Defender portal and use the IoT specific security features to protect your IoT environment. |
| 19 | + |
| 20 | +[!INCLUDE [defender-iot-preview](../includes//defender-for-iot-defender-public-preview.md)] |
| 21 | + |
| 22 | +## Prerequisites |
| 23 | + |
| 24 | +Make sure that you have: |
| 25 | + |
| 26 | +- IoT devices in your network, visible in the Microsoft Defender portal **Device inventory** |
| 27 | + |
| 28 | +- Access to the Microsoft Defender Portal as a [Security administrator](/entra/identity/role-based-access-control/permissions-reference#security-administrator) |
| 29 | + |
| 30 | +- One of the following licenses: |
| 31 | + |
| 32 | + - A Microsoft 365 E5 (ME5) or E5 Security license. Enterprise IoT security is included in this package and needs to be turned on. |
| 33 | + |
| 34 | + - Microsoft Defender for Endpoint P2, with an extra, standalone **Microsoft Defender for IoT - EIoT Device License - add-on** license, available for trial or purchase from the Microsoft 365 admin center. |
| 35 | + |
| 36 | +## Add enterprise IoT security in the Defender portal |
| 37 | + |
| 38 | +There are two ways to add enterprise IoT to the Defender portal: |
| 39 | + |
| 40 | +- ME5/ E5 Security customers: Turn on support for enterprise IoT Security in the Defender Portal. For more information, see [turn on enterprise IoT security](#me5-e5-security-customers). |
| 41 | + |
| 42 | +- Defender for Endpoint P2 customers: Start with a free trial or purchase standalone, per-device licenses to gain the same IoT-specific security value. For more information, see [set up a standalone trial license](#set-up-a-standalone-trial-license). To purchase a full license, see [purchase the standalone full license](#set-up-a-standalone-full-license). |
| 43 | + |
| 44 | +## ME5/ E5 Security customers |
| 45 | + |
| 46 | +This procedure describes how to turn on enterprise IoT security in Defender portal for ME5/ E5 Security customers. |
| 47 | + |
| 48 | +If you have extra devices that aren't covered by your ME5/E5 licenses, you can purchase standalone licenses. For more information, see [set up a standalone full license](#set-up-a-standalone-full-license). |
| 49 | + |
| 50 | +**To turn on enterprise IoT security**: |
| 51 | + |
| 52 | +1. In [Microsoft Defender portal](https://security.microsoft.com/), select **Settings** > **Device Discovery** > **Enterprise IoT**. |
| 53 | + |
| 54 | + > [!NOTE] |
| 55 | + > |
| 56 | + > Ensure you have turned on Device Discovery in **Settings** > **Endpoints** > **Advanced Features**. |
| 57 | +
|
| 58 | +1. Toggle the Enterprise IoT security option to **On**. For example: |
| 59 | + |
| 60 | + :::image type="content" source="media/enterprise-iot-get-started/eiot-toggle-on.png" alt-text="Screenshot of enterprise IoT toggled on in Microsoft Defender portal."::: |
| 61 | + |
| 62 | +## Defender for Endpoint P2 customers |
| 63 | + |
| 64 | +Customers with a Microsoft Defender for Endpoint P2 license only can use a trial standalone license for enterprise IoT security. |
| 65 | + |
| 66 | +You can also purchase a license using the Microsoft 365 admin center. Before purchasing the license you need to [calculate the number of monitored devices in your network](#calculate-monitored-devices-for-enterprise-iot-security) to determine how many licenses you need. |
| 67 | + |
| 68 | +### Set up a standalone trial license |
| 69 | + |
| 70 | +**To start an enterprise IoT trial**: |
| 71 | + |
| 72 | +1. Go to the [Microsoft 365 admin center](https://portal.office.com/AdminPortal/Home#/catalog) > **Marketplace**. |
| 73 | + |
| 74 | +1. Search for the **Microsoft Defender for IoT - EIoT Device License - add-on** and filter the results by **Other services**. For example: |
| 75 | + |
| 76 | + :::image type="content" source="media/enterprise-iot-get-started/eiot-standalone.png" alt-text="Screenshot of the Marketplace search results for the EIoT Device License."::: |
| 77 | + |
| 78 | + > [!IMPORTANT] |
| 79 | + > |
| 80 | + > The prices shown in this image are for example purposes only and are not intended to reflect actual prices. |
| 81 | +
|
| 82 | +1. Under **Microsoft Defender for IoT - EIoT Device License - add-on**, select **Details**. |
| 83 | + |
| 84 | +1. On the **Microsoft Defender for IoT - EIoT Device License - add-on** page, select **Start free trial**. On the **Check out** page, select **Try now**. |
| 85 | + |
| 86 | +> [!TIP] |
| 87 | +> Make sure to [assign your licenses to specific users](/microsoft-365/admin/manage/assign-licenses-to-users) to start using them. |
| 88 | +
|
| 89 | +### Set up a standalone full license |
| 90 | + |
| 91 | +Before purchasing a license you must calculate the number of devices you're monitoring. |
| 92 | + |
| 93 | +#### Calculate monitored devices for enterprise IoT security |
| 94 | + |
| 95 | +Use the following procedure to calculate how many devices you need to monitor if: |
| 96 | + |
| 97 | +- You're an ME5/E5 Security customer and think you need to monitor more devices than the devices allocated per ME5/E5 Security license |
| 98 | +- You're a Defender for Endpoint P2 customer who's purchasing standalone enterprise IoT licenses |
| 99 | + |
| 100 | +**To calculate the number of devices you're monitoring:** |
| 101 | + |
| 102 | +1. In [Microsoft Defender portal](https://security.microsoft.com/), select **Assets** > **Devices** to open the **Device inventory** page. |
| 103 | + |
| 104 | +1. Note down the total number of **IoT devices** listed. |
| 105 | + |
| 106 | + For example: |
| 107 | + |
| 108 | + :::image type="content" source="media/enterprise-iot-get-started/device-inventory-iot.png" alt-text="Screenshot of network device and IoT devices in the device inventory in Microsoft Defender for Endpoint." lightbox="media/enterprise-iot-get-started/device-inventory-iot.png"::: |
| 109 | + |
| 110 | +1. Round your total to a multiple of 100 and compare it against the number of licenses you have. For example: |
| 111 | + |
| 112 | + - If in Microsoft Defender portal **Device inventory**, you have *1204* IoT devices. |
| 113 | + - Round down to *1200* devices. |
| 114 | + - You have 240 ME5 licenses, which cover **1200** devices. |
| 115 | + |
| 116 | + You need another **4** standalone devices to cover the gap. |
| 117 | + |
| 118 | +For more information, see the [Defender for Endpoint Device discovery overview](/microsoft-365/security/defender-endpoint/device-discovery). |
| 119 | + |
| 120 | +> [!NOTE] |
| 121 | +> Devices listed on the **Computers & Mobile** tab, including those managed by Defender for Endpoint or otherwise, are not included in the number of [devices](device-discovery.md#identified-unique-devices) monitored by Defender for IoT. |
| 122 | +
|
| 123 | +#### Purchase the standalone license |
| 124 | + |
| 125 | +To purchase the standalone full license: |
| 126 | + |
| 127 | +1. Go to the [Microsoft 365 admin center](https://portal.office.com/AdminPortal/Home#/catalog) **Billing > Purchase services**. If you don't have this option, select **Marketplace** instead. |
| 128 | + |
| 129 | +1. Search for the **Microsoft Defender for IoT - EIoT Device License - add-on** and filter the results by **Other services**. For example: |
| 130 | + |
| 131 | + :::image type="content" source="media/enterprise-iot-get-started/eiot-standalone.png" alt-text="Screenshot of the Marketplace search results for the EIoT Device License."::: |
| 132 | + |
| 133 | + > [!IMPORTANT] |
| 134 | + > The prices shown in this image are for example purposes only and are not intended to reflect actual prices. |
| 135 | +
|
| 136 | +1. On the **Microsoft Defender for IoT - EIoT Device License - add-on** page, enter your selected license quantity, select a billing frequency, and then select **Buy**. |
| 137 | + |
| 138 | +For more information, see the [Microsoft 365 admin center help](/microsoft-365/admin/). |
| 139 | + |
| 140 | +## Next steps |
| 141 | + |
| 142 | +[Manage enterprise IoT](enterprise-iot-manage.md) |
0 commit comments