Skip to content

Commit 641ac93

Browse files
authored
Merge branch 'main' into new-mdvm-recommendations
2 parents 47ebbca + 4e92f18 commit 641ac93

File tree

811 files changed

+5386
-4279
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

811 files changed

+5386
-4279
lines changed

.openpublishing.redirection.defender-endpoint.json

Lines changed: 12 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -20,11 +20,6 @@
2020
"redirect_url": "/defender-endpoint/evaluate-mdav-using-gp",
2121
"redirect_document_id": false
2222
},
23-
{
24-
"source_path": "defender-endpoint/linux-install-with-activator.md",
25-
"redirect_url": "/defender-endpoint/linux-custom-location-installation",
26-
"redirect_document_id": false
27-
},
2823
{
2924
"source_path": "defender-endpoint/preview.md",
3025
"redirect_url": "/defender-xdr/preview",
@@ -155,6 +150,11 @@
155150
"redirect_url": "/defender-endpoint/onboard-server",
156151
"redirect_document_id": false
157152
},
153+
{
154+
"source_path": "defender-endpoint/linux-install-with-activator.md",
155+
"redirect_url": "/defender-endpoint/linux-install-with-defender-deployment-tool",
156+
"redirect_document_id": false
157+
},
158158
{
159159
"source_path": "defender-endpoint/mde-linux-arm.md",
160160
"redirect_url": "/defender-endpoint/microsoft-defender-endpoint-linux",
@@ -169,6 +169,12 @@
169169
"source_path": "defender-endpoint/install-defender-endpoint-linux.md",
170170
"redirect_url": "/defender-endpoint/mde-linux-prerequisites",
171171
"redirect_document_id": false
172-
}
172+
},
173+
{
174+
"source_path": "defender-endpoint/api/user.md",
175+
"redirect_url": "/defender-endpoint/api/get-user-related-alerts",
176+
"redirect_document_id": false
177+
}
178+
173179
]
174180
}

defender-business/get-defender-business.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -63,7 +63,7 @@ Microsoft has a list of solution providers who are authorized to sell offerings,
6363

6464
Defender for Business provides advanced security protection for your company's devices. For more information, see [What is Microsoft Defender for Business](mdb-overview.md)?
6565

66-
1. Go to the [Microsoft Defender for Business](https://www.microsoft.com/security/business/threat-protection/microsoft-defender-business) web page, and select an option to try or buy Defender for Business. Fill in the requested information.
66+
1. Go to the [Microsoft Defender for Business](https://www.microsoft.com/security/business/endpoint-security/microsoft-defender-business) web page, and select an option to try or buy Defender for Business. Fill in the requested information.
6767

6868
If you're starting a trial, look for your acceptance email, which contains your promo code and a link to sign in. And be sure to see the [Trial user guide for Defender for Business](trial-playbook-defender-business.md).
6969

defender-business/mdb-faq.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@ sections:
2929
answer: |
3030
We recommend working with a [Microsoft partner](https://www.microsoft.com/security/business/find-a-partner).
3131
32-
If you prefer to try or buy Defender for Business on your own, go to the [Defender for Business](https://www.microsoft.com/security/business/threat-protection/microsoft-defender-business) product page, and select the option to try or buy Defender for Business.
32+
If you prefer to try or buy Defender for Business on your own, go to the [Defender for Business](https://www.microsoft.com/security/business/endpoint-security/microsoft-defender-business) product page, and select the option to try or buy Defender for Business.
3333
3434
For more information, see [Get Defender for Business](get-defender-business.md).
3535

defender-endpoint/TOC.yml

Lines changed: 30 additions & 20 deletions
Original file line numberDiff line numberDiff line change
@@ -135,6 +135,8 @@
135135
href: streamlined-device-connectivity-urls-gov.md
136136
- name: Onboard client devices
137137
items:
138+
- name: Onboard Windows devices using the Defender deployment tool
139+
href: defender-deployment-tool-windows.md
138140
- name: Onboard client devices running Windows or macOS
139141
href: onboard-client.md
140142
- name: Defender for Endpoint plug-in for WSL
@@ -174,6 +176,7 @@
174176
href: mde-linux-deployment-on-sap.md
175177
- name: Use custom detection rules to protect SAPXPG
176178
href: mde-sap-custom-detection-rules.md
179+
177180
- name: Defender for Endpoint on macOS
178181
items:
179182
- name: Deploy Defender for Endpoint on macOS
@@ -267,6 +270,8 @@
267270
items:
268271
- name: Enabling deployment to a custom location
269272
href: linux-custom-location-installation.md
273+
- name: Deployment tool based deployment
274+
href: linux-install-with-defender-deployment-tool.md
270275
- name: Installer script based deployment
271276
href: linux-installer-script.md
272277
- name: Ansible based deployment
@@ -625,6 +630,12 @@
625630
href: exclude-devices.md
626631
- name: Identifying transient devices
627632
href: transient-device-tagging.md
633+
- name: Collect custom device data
634+
items:
635+
- name: Overview
636+
href: custom-data-collection.md
637+
- name: Create custom data collection rules
638+
href: create-custom-data-collection-rules.md
628639
- name: Internet facing devices
629640
href: internet-facing-devices.md
630641
- name: Device timeline
@@ -1062,6 +1073,10 @@
10621073
href: respond-machine-alerts.md#contain-devices-from-the-network
10631074
- name: Contain user from the network
10641075
href: respond-machine-alerts.md#contain-user-from-the-network
1076+
- name: Automatically apply GPO hardening (predictive shielding)
1077+
href: respond-machine-alerts.md#gpo-hardening
1078+
- name: Automatically apply Safeboot hardening (predictive shielding)
1079+
href: respond-machine-alerts.md#safeboot-hardening
10651080
- name: Consult a threat expert
10661081
href: respond-machine-alerts.md#consult-a-threat-expert
10671082
- name: Check activity details in Action center
@@ -1098,10 +1113,7 @@
10981113
href: live-response-command-examples.md
10991114

11001115
- name: Use sensitivity labels to prioritize incident response
1101-
href: information-protection-investigation.md
1102-
1103-
- name: Advanced hunting
1104-
href: /defender-xdr/advanced-hunting-overview?toc=/defender-endpoint/toc.json&bc=/defender-endpoint/breadcrumb/toc.json
1116+
href: information-protection-investigation.md
11051117

11061118
- name: Threat analytics
11071119
items:
@@ -1195,7 +1207,7 @@
11951207

11961208
- name: Alert
11971209
items:
1198-
- name: Alert methods and properties
1210+
- name: Alert properties
11991211
href: api/alerts.md
12001212
- name: List alerts
12011213
href: api/get-alerts.md
@@ -1233,7 +1245,7 @@
12331245

12341246
- name: Authenticated scan
12351247
items:
1236-
- name: Authenticated scan methods and properties
1248+
- name: Authenticated scan properties
12371249
href: api/get-authenticated-scan-properties.md
12381250
- name: Get all scan definitions
12391251
href: api/get-all-scan-definitions.md
@@ -1257,7 +1269,7 @@
12571269

12581270
- name: Automated investigation
12591271
items:
1260-
- name: Investigation methods and properties
1272+
- name: Investigation properties
12611273
href: api/investigation.md
12621274
- name: List Investigation
12631275
href: api/get-investigation-collection.md
@@ -1289,7 +1301,7 @@
12891301

12901302
- name: File
12911303
items:
1292-
- name: File methods and properties
1304+
- name: File properties
12931305
href: api/files.md
12941306
- name: Get file information
12951307
href: api/get-file-information.md
@@ -1302,12 +1314,12 @@
13021314

13031315
- name: Indicators
13041316
items:
1305-
- name: Indicators methods and properties
1317+
- name: Indicators properties
13061318
href: api/ti-indicator.md
13071319
- name: List Indicators
13081320
href: api/get-ti-indicators-collection.md
13091321
- name: Submit Indicator
1310-
href: api/ti-indicator.md
1322+
href: api/post-ti-indicator.md
13111323
- name: Import Indicator
13121324
href: api/import-ti-indicators.md
13131325
- name: Delete Indicator
@@ -1329,7 +1341,7 @@
13291341

13301342
- name: Live response library
13311343
items:
1332-
- name: Live response library methods and properties
1344+
- name: Live response library properties
13331345
href: live-response-library-methods.md
13341346
- name: List library files
13351347
href: api/list-library-files.md
@@ -1340,7 +1352,7 @@
13401352

13411353
- name: Machine
13421354
items:
1343-
- name: Machine methods and properties
1355+
- name: Machine properties
13441356
href: api/machine.md
13451357
- name: List machines
13461358
href: api/get-machines.md
@@ -1375,7 +1387,7 @@
13751387

13761388
- name: Machine Action
13771389
items:
1378-
- name: Machine Action methods and properties
1390+
- name: Machine Action properties
13791391
href: api/machineaction.md
13801392
- name: List Machine Actions
13811393
href: api/get-machineactions-collection.md
@@ -1408,7 +1420,7 @@
14081420

14091421
- name: Recommendation
14101422
items:
1411-
- name: Recommendation methods and properties
1423+
- name: Recommendation properties
14121424
href: api/recommendation.md
14131425
- name: List all recommendations
14141426
href: api/get-all-recommendations.md
@@ -1423,7 +1435,7 @@
14231435

14241436
- name: Remediation activity
14251437
items:
1426-
- name: Remediation activity methods and properties
1438+
- name: Remediation activity properties
14271439
href: api/get-remediation-methods-properties.md
14281440
- name: Get one remediation activity by ID
14291441
href: api/get-remediation-one-activity.md
@@ -1434,7 +1446,7 @@
14341446

14351447
- name: Score
14361448
items:
1437-
- name: Score methods and properties
1449+
- name: Score properties
14381450
href: api/score.md
14391451
- name: List exposure score by machine group
14401452
href: api/get-machine-group-exposure-score.md
@@ -1454,7 +1466,7 @@
14541466

14551467
- name: Software
14561468
items:
1457-
- name: Software methods and properties
1469+
- name: Software properties
14581470
href: api/software.md
14591471
- name: List software
14601472
href: api/get-software.md
@@ -1470,16 +1482,14 @@
14701482
href: api/get-missing-kbs-software.md
14711483
- name: User
14721484
items:
1473-
- name: User methods
1474-
href: api/user.md
14751485
- name: Get user related alerts
14761486
href: api/get-user-related-alerts.md
14771487
- name: Get user related machines
14781488
href: api/get-user-related-machines.md
14791489

14801490
- name: Vulnerability
14811491
items:
1482-
- name: Vulnerability methods and properties
1492+
- name: Vulnerability properties
14831493
href: api/vulnerability.md
14841494
- name: List vulnerabilities
14851495
href: api/get-all-vulnerabilities.md

defender-endpoint/access-mssp-portal.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,8 +3,8 @@ title: Access the Microsoft Defender XDR MSSP customer portal
33
description: Access the Microsoft Defender XDR MSSP customer portal
44
ms.service: defender-endpoint
55
ms.subservice: onboard
6-
ms.author: bagol
7-
author: batamig
6+
ms.author: kesharab
7+
author: KesemSharabi
88
ms.localizationpriority: medium
99
manager: bagol
1010
audience: ITPro

defender-endpoint/address-unwanted-behaviors-mde.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
---
22
title: Address unwanted behaviors in Microsoft Defender for Endpoint with exclusions, indicators, and other techniques
33
description: Learn how to use exclusions, indicators, and other techniques to address unwanted behaviors in Microsoft Defender for Endpoint.
4-
author: batamig
5-
ms.author: bagol
4+
author: KesemSharabi
5+
ms.author: kesharab
66
manager: bagol
77
ms.date: 11/14/2024
88
ms.topic: how-to
@@ -153,4 +153,4 @@ In this scenario, whenever a user opens documents that were created by using Mic
153153
## See also
154154

155155
- [Exclusions overview](navigate-defender-endpoint-antivirus-exclusions.md)
156-
- [Managing exclusions reference](managing-exclusions.md)
156+
- [Managing exclusions reference](managing-exclusions.md)

defender-endpoint/admin-submissions-mde.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ ms.date: 05/06/2024
66
appliesto:
77
- Microsoft Defender for Endpoint
88
ms.service: defender-endpoint
9-
ms.author: bagol
10-
author: batamig
9+
ms.author: kesharab
10+
author: KesemSharabi
1111
manager: bagol
1212
ms.localizationpriority: medium
1313
audience: ITPro

defender-endpoint/adv-tech-of-mdav.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
---
22
title: Advanced technologies at the core of Microsoft Defender Antivirus
33
description: Microsoft Defender Antivirus engines and advanced technologies
4-
author: batamig
5-
ms.author: bagol
4+
author: KesemSharabi
5+
ms.author: kesharab
66
ms.reviewer: yongrhee
77
manager: bagol
88
ms.service: defender-endpoint

defender-endpoint/aggregated-reporting.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -2,8 +2,8 @@
22
title: Aggregated reporting in Microsoft Defender for Endpoint
33
description: Learn how you collect important telemetry in Microsoft Defender for Endpoint by turning on aggregated reporting.
44
ms.service: defender-endpoint
5-
ms.author: bagol
6-
author: batamig
5+
ms.author: kesharab
6+
author: KesemSharabi
77
ms.localizationpriority: medium
88
manager: bagol
99
audience: ITPro

defender-endpoint/alerts-queue-endpoint-detection-response.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,8 +4,8 @@ ms.reviewer:
44
description: View and manage the alerts surfaced in Microsoft Defender XDR
55
keywords:
66
ms.service: defender-endpoint
7-
ms.author: bagol
8-
author: batamig
7+
ms.author: lwainstein
8+
author: limwainstein
99
ms.localizationpriority: medium
1010
manager: bagol
1111
audience: ITPro

0 commit comments

Comments
 (0)