Skip to content

Commit 7b2e151

Browse files
authored
Merge pull request #596 from MicrosoftDocs/repo_sync_working_branch
Confirm merge from repo_sync_working_branch to main to sync with https://github.com/MicrosoftDocs/defender-docs (branch public)
2 parents eb3c6fb + e6836a3 commit 7b2e151

File tree

1 file changed

+6
-7
lines changed

1 file changed

+6
-7
lines changed

defender-endpoint/mde-p1-setup-configuration.md

Lines changed: 6 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ ms.topic: overview
1010
ms.service: defender-endpoint
1111
ms.subservice: onboard
1212
ms.localizationpriority: medium
13-
ms.date: 09/13/2023
13+
ms.date: 05/31/2024
1414
ms.reviewer: shlomiakirav
1515
f1.keywords: NOCSH
1616
ms.collection:
@@ -208,21 +208,20 @@ We recommend using Intune to configure controlled folder access.
208208

209209
:::image type="content" source="/defender/media/mde-p1/mem-asrpolicies.png" alt-text="attack surface reduction policies in the Intune portal" lightbox="/defender/media/mde-p1/mem-asrpolicies.png":::
210210

211-
1. Go to the Intune admin center ([https://endpoint.microsoft.com](https://endpoint.microsoft.com)) and sign in.
211+
1. Go to the Intune admin center ([https://intune.microsoft.com](https://intune.microsoft.com)) and sign in.
212212

213213
2. Select **Endpoint Security**, and then select **Attack Surface Reduction**.
214214

215215
3. Choose **+ Create Policy**.
216216

217-
4. For **Platform**, select **Windows 10 and later**, and for **Profile**, select **Attack surface reduction rules**. Then choose **Create**.
217+
4. For **Platform**, select **Windows 10, Windows 11, and Windows Server**, and for **Profile**, select **Attack surface reduction rules**. Then choose **Create**.
218218

219219
5. On the **Basics** tab, name the policy and add a description. Select **Next**.
220220

221-
6. On the **Configuration settings** tab, in the **Attack Surface Reduction Rules** section, scroll down to the bottom. In the **Enable folder protection** drop-down, select **Enable**. You can optionally specify these other settings:
221+
6. On the **Configuration settings** tab, in the **Attack Surface Reduction Rules** section, scroll down to the bottom. In the **Enable Controlled Folder Access** drop-down, select **Enable**. You can optionally specify these other settings:
222222

223-
- Next to **List of additional folders that need to be protected**, select the drop-down menu, and then add folders that need to be protected.
224-
- Next to **List of apps that have access to protected folders**, select the drop-down menu, and then add apps that should have access to protected folders.
225-
- Next to **Exclude files and paths from attack surface reduction rules**, select the drop-down menu, and then add the files and paths that need to be excluded from attack surface reduction rules.
223+
- Next to **Controlled Folder Access Protected Folders**, toggle the switch to **Configured**, and then add folders that need to be protected.
224+
- Next to **Controlled Folder Access Allowed Applications**, toggle the switch to **Configured**, and then add apps that should have access to protected folders.
226225

227226
Then choose **Next**.
228227

0 commit comments

Comments
 (0)