You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: ATPDocs/deploy/activate-capabilities.md
+6-10Lines changed: 6 additions & 10 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -80,7 +80,7 @@ Set-MDIConfiguration -Mode Domain -Configuration All
80
80
81
81
## Activate Defender for Identity capabilities
82
82
83
-
After ensuring that your environment is completely configured, activate the Microsoft Defender for Identity capabilities on your domain controller.
83
+
After ensuring that your environment is completely configured, activate the Microsoft Defender for Identity capabilities on your domain controller.
84
84
85
85
Activate the Defender for Identity from the [Microsoft Defender portal](https://security.microsoft.com).
86
86
@@ -90,13 +90,10 @@ Activate the Defender for Identity from the [Microsoft Defender portal](https://
90
90
91
91
2. Select the domain controller where you want to activate the Defender for Identity capabilities and then select **Activate**. Confirm your selection when prompted.
> You can choose to activate eligible domain controllers either automatically, where Defender for Identity activates them as soon as they are discovered, or manually, where you select specific domain controllers from the list of eligible servers.
93
+
> [!NOTE]
94
+
> You can choose to activate eligible domain controllers either automatically, where Defender for Identity activates them as soon as they're discovered, or manually, where you select specific domain controllers from the list of eligible servers.
97
95
98
-
3. When the activation is complete, a green success banner shows. In the banner, select **Click here to see the onboarded servers** to jump to the **Settings > Identities > Sensors** page, where you can check your sensor health.
3. When the activation is complete, a green success banner shows. In the banner, select **Click here to see the onboarded servers** to jump to the **Settings > Identities > Sensors** page, where you can check your sensor health.
100
97
101
98
## Onboarding Confirmation
102
99
@@ -107,7 +104,7 @@ To confirm the sensor has been onboarded:
107
104
2. Check that the onboarded domain controller is listed.
108
105
109
106
> [!NOTE]
110
-
> The first time you activate Defender for Identity capabilities on your domain controller, it may take up to an hour for the first sensor to show as**Running** on the **Sensors** page. Subsequent activations are shown within five minutes.
107
+
> The activation doesn't require a restart/reboot. The first time you activate Defender for Identity capabilities on your domain controller, it may take up to an hour for the first sensor to show as**Running** on the **Sensors** page. Subsequent activations are shown within five minutes.
111
108
112
109
## Test activated capabilities
113
110
@@ -219,8 +216,7 @@ For more information, see [Remediation actions in Microsoft Defender for Identit
219
216
If you want to deactivate Defender for Identity capabilities on your domain controller, delete it from the **Sensors** page:
220
217
221
218
1. In the Defender portal, select **Settings > Identities > Sensors**.
222
-
1. Select the domain controller where you want to deactivate Defender for Identity capabilities, select **Delete**, and confirm your selection.
1. Select the domain controller where you want to deactivate Defender for Identity capabilities, select **Delete**, and confirm your selection.
224
220
225
221
Deactivating Defender for Identity capabilities from your domain controller doesn't remove the domain controller from Defender for Endpoint. For more information, see [Defender for Endpoint documentation](/microsoft-365/security/defender-endpoint/).
0 commit comments