You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/android-whatsnew.md
+21-21Lines changed: 21 additions & 21 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -14,7 +14,7 @@ ms.collection:
14
14
ms.topic: reference
15
15
ms.subservice: android
16
16
search.appverid: met150
17
-
ms.date: 11/15/2024
17
+
ms.date: 12/06/2024
18
18
---
19
19
20
20
# What's new in Microsoft Defender for Endpoint on Android
@@ -27,42 +27,43 @@ ms.date: 11/15/2024
27
27
28
28
Want to experience Microsoft Defender for Endpoint? [Sign up for a free trial.](https://signup.microsoft.com/create-account/signup?products=7f379fee-c4f9-4278-b0a1-e4c8c2fcdf7e&ru=https://aka.ms/MDEp2OpenTrial?ocid=docs-wdatp-exposedapis-abovefoldlink)
29
29
30
-
**December - 2024**
30
+
## Android low-touch onboarding is now GA
31
31
32
-
## Android low touch onboarding is now GA
32
+
**December 2024**
33
33
34
34
**Key benefits**
35
35
36
-
1.**Faster setup on Android devices** – Simplified Android onboarding supports silent sign-on and auto-granting of certain permissions on a user’s device. As such, users will only be required to grant necessary permissions to completely onboard Defender for Endpoint.
36
+
1.**Faster setup on Android devices** – Simplified Android onboarding supports silent sign-on and auto-granting of certain permissions on a user's device. As such, users will only be required to grant necessary permissions to completely onboard Defender for Endpoint.
37
37
38
-
1.**Intuitive guidance** - A clear and intuitive flow to guide users through each step.
38
+
2.**Intuitive guidance** - A clear and intuitive flow to guide users through each step.
39
39
40
-
1.**Broad coverage with support across multiple Android profiles** – Android enterprise BYOD, COPE, and fully-managed.
40
+
3.**Broad coverage with support across multiple Android profiles** – Android enterprise BYOD, COPE, and fully-managed.
41
41
42
-
**Configuring Low Touch Onboarding**
42
+
**Configuring low-touch onboarding**
43
43
44
-
Although Low Touch onboarding is disabled by default, organization admins can enable it through app configuration policies on Intune by following the steps mentioned in the link [Android Low Touch Onboarding](/defender-endpoint/android-intune).
44
+
Although low-touch onboarding is disabled by default, security administrators can enable it through app configuration policies in Intune. See [Android low-touch onboarding](/defender-endpoint/android-intune).
45
45
46
46
> [!IMPORTANT]
47
-
> **Ending support for Device Administrator enrolled devices**
48
-
> Microsoft Intune and Defender for Endpoint are ending support for Device Administrator enrolled devices with access to [Google Mobile Services](/mem/intune/apps/manage-without-gms) (GMS), beginning December 31, 2024.
47
+
> **Ending support for device administrator enrolled devices**
48
+
>
49
+
> Microsoft Intune and Defender for Endpoint are ending support for device administrator enrolled devices with access to [Google Mobile Services](/mem/intune/apps/manage-without-gms) (GMS), beginning December 31, 2024.
49
50
>
50
51
> **For devices with access to GMS**
51
52
>
52
-
> After Intune and Defender for Endpoint ends support for Android device administrator, devices with access to GMS will be impacted in the following ways:
53
+
> After support ends for device administrator enrolled devices, devices with access to GMS will be afffected in the following ways:
53
54
>
54
-
> - Intune and Defender for Endpoint won’t make changes or updates to Android device administrator management, such as bug fixes, security fixes, or fixes to address changes in new Android versions.
55
-
> - Intune and Defender for Endpoint technical support will no longer support these devices.
55
+
> - Intune and Defender for Endpoint won't make changes or updates to Android device administrator management, such as bug fixes, security fixes, or fixes to address changes in new Android versions.
56
+
> - Intune and Defender for Endpoint technical support will no longer support devices with access to GMS.
56
57
>
57
58
> For more information, see [Tech Community blog: Intune ending support for Android device administrator on devices with GMS in December 2024](https://techcommunity.microsoft.com/blog/intunecustomersuccess/intune-ending-support-for-android-device-administrator-on-devices-with-gms-in-de/3915443).
58
59
59
60
61
+
## Network protection
62
+
60
63
**Aug-2024 (version: 1.0.6812.0101)**
61
64
62
65
- Network Protection feature is enabled by default for all users
63
66
64
-
## Network protection
65
-
66
67
Network protection on Microsoft Defender for Endpoint is now generally available. Network protection provides protection against rogue Wi-Fi related threats, rogue hardware like pineapple devices, and rogue certificates. It notifies the user if a related threat is detected. Users also see a guided experience to connect to secure networks and change networks when they're connected to an unsecure connection.
67
68
68
69
> [!IMPORTANT]
@@ -98,7 +99,6 @@ Microsoft Defender for Endpoint on Android enables **Optional Permissions** in t
98
99
99
100
Microsoft Defender for Endpoint is now supported on Android Enterprise personal profile (BYOD only) with all the key features including malware scanning, protection from phishing links, network protection and vulnerability management. This support is coupled with [privacy controls](android-configure.md#privacy-controls) to ensure user privacy on personal profile. For more information, read the [announcement](https://techcommunity.microsoft.com/t5/microsoft-defender-for-endpoint/announcing-the-public-preview-of-defender-for-endpoint-personal/ba-p/3370979) and the [deployment guide](android-intune.md#set-up-microsoft-defender-in-personal-profile-on-android-enterprise-in-byod-mode).
100
101
101
-
102
102
## Microsoft Defender on Android app updates
103
103
104
104
Microsoft Defender is no longer supported for versions 1.0.3011.0302 or earlier. Users are requested to upgrade to latest versions to keep their devices secure.
Microsoft Defender for Endpoint has released this update required by [Google](https://developer.android.com/distribute/play-policies#APILevel30) to upgrade to Android API 30. This change prompts users seeking access to [new storage permission](https://developer.android.com/training/data-storage/manage-all-files#all-files-access-google-play), for devices running Android 11 or later. Users need to accept this new storage permission once they update Defender app with the release build 1.0.3501.0301 or later. This update ensures that Defender for Endpoint's app security feature to function without any disruption. For more information, review the following sections.
129
129
130
-
**How will this affect your organization:** These changes take effect if you're using Microsoft Defender for Endpoint on devices running Android 11 or later and updated Defender for Endpoint to release build 1.0.3501.0301 or later.
130
+
**How this affects your organization:** These changes take effect if you're using Microsoft Defender for Endpoint on devices running Android 11 or later and updated Defender for Endpoint to release build 1.0.3501.0301 or later.
131
131
132
132
> [!NOTE]
133
133
> The new storage permissions cannot be configured by admin to auto approve through Microsoft Intune. User will need to take action to provide access to this permission.
@@ -145,11 +145,11 @@ Notify your users and helpdesk (as applicable) that users will need to accept th
145
145
146
146
2. Tap **Begin**.
147
147
148
-
1. Tap the toggle for **Allow access to manage all files.**
148
+
3. Tap the toggle for **Allow access to manage all files.**
149
149
150
-
4. The device is now protected.
150
+
The device is now protected.
151
151
152
-
> [!NOTE]
153
-
> This permission allows Microsoft Defender for Endpoint to access storage on user's device, which helps detect and remove malicious and unwanted apps. Microsoft Defender for Endpoint accesses/scans Android app package file (.apk) only. On devices with a Work Profile, Defender for Endpoint only scans work-related files.
152
+
> [!NOTE]
153
+
> This permission allows Microsoft Defender for Endpoint to access storage on user's device, which helps detect and remove malicious and unwanted apps. Microsoft Defender for Endpoint accesses/scans Android app package file (.apk) only. On devices with a Work Profile, Defender for Endpoint only scans work-related files.
154
154
155
155
[!INCLUDE [Microsoft Defender for Endpoint Tech Community](../includes/defender-mde-techcommunity.md)]
0 commit comments