Skip to content

Commit 7693c30

Browse files
Update threat-explorer-threat-hunting.md
@chrisda this is related to take action for Gov clouds.
1 parent 5413a1f commit 7693c30

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

defender-office-365/threat-explorer-threat-hunting.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -299,6 +299,8 @@ The **Take action** wizard is described in the following list:
299299
Select **Back** to go back and change your selections.
300300

301301
When you're finished on the **Review and submit** page, select **Submit**.
302+
> [!NOTE]
303+
> In U.S. Government organizations (Microsoft 365 GCC, GCC High, and DoD) admins can take the actions **Soft delete**, **Move to junk folder**, **Move to deleted items**, **Hard delete**, and **Move to inbox**. The actions **Delete sender's copy** and **Move to inbox** from quarantine folder aren't available. Also the action logs are only available in https://security.microsoft.com/threatincidents not in the Unified action center (https://security.microsoft.com/action-center)
302304
303305
> [!TIP]
304306
> The actions might take time for to appear on the related pages, but the speed of the remediation isn't affected.

0 commit comments

Comments
 (0)