You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-xdr/mto-requirements.md
+13-13Lines changed: 13 additions & 13 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,5 +1,5 @@
1
1
---
2
-
title: Set up multitenant management in Microsoft Defender XDR
2
+
title: Set up Microsoft Defender multitenant management
3
3
description: Learn what steps you need to take to get started with multitenant management for Microsoft Defender XDR and the Microsoft unified security operations platform.
4
4
ms.service: defender-xdr
5
5
ms.author: siosulli
@@ -19,17 +19,17 @@ appliesto:
19
19
- Microsoft Sentinel in the Microsoft Defender portal
20
20
---
21
21
22
-
# Set up multitenant management in Microsoft Defender XDR
22
+
# Set up Microsoft Defender multitenant management
23
23
24
24
This article describes the steps you need to take to start using multitenant management for Microsoft Defender XDR and the Microsoft unified security operations platform.
25
25
26
26
1.[Review the requirements](#review-the-requirements)
27
27
2.[Verify your tenant access](#verify-your-tenant-access)
28
-
3.[Set up multitenant management in Microsoft Defender XDR](#set-up-multitenant-management)
28
+
3.[Set up Microsoft Defender multitenant management](#set-up-multitenant-management)
29
29
30
30
>[!Note]
31
31
>- In multi-tenant management, interactions between the multi-tenant user and the managed tenants could involve accessing data and managing configurations. The ability to undertake these actions is determined by the permissions a managed tenant has granted the multi-tenant user.
32
-
>-[Data privacy](data-privacy.md), [role-based access control (RBAC)](m365d-permissions.md) and [Licensing](prerequisites.md#licensing-requirements) are respected by multi-tenant management in Microsoft Defender XDR.
32
+
>-[Data privacy](data-privacy.md), [role-based access control (RBAC)](m365d-permissions.md) and [Licensing](prerequisites.md#licensing-requirements) are respected by Microsoft Defender multi-tenant management.
33
33
34
34
## Review the requirements
35
35
@@ -40,14 +40,14 @@ The following table lists the basic requirements you need to use multitenant man
40
40
| Microsoft Defender XDR prerequisites | Verify you meet the [Microsoft Defender XDR prerequisites](prerequisites.md)|
41
41
| Multitenant access | To view and manage the data you have access to in multitenant management, you need to ensure you have the necessary access. For each tenant you want to view and manage, you need to have either: <br/> <br/> - [Granular delegated admin privileges (GDAP)](/partner-center/gdap-introduction) <br/> - [Microsoft Entra B2B authentication](/azure/active-directory/external-identities/what-is-b2b) <br/> <br/> To learn more about how to synchronize multiple B2B users across tenants, see [Configure cross-tenant synchronization](/azure/active-directory/multi-tenant-organizations/cross-tenant-synchronization-configure).|
42
42
| Permissions | Users must be assigned the correct roles and permissions at the individual tenant level, in order to view and manage the associated data in multitenant management. To learn more, see: <br/><br/> - [Manage access to Microsoft Defender XDR with Microsoft Entra global roles](./m365d-permissions.md) <br/> - [Custom roles in role-based access control for Microsoft Defender XDR](./custom-roles.md)<br/><br/> To learn how to grant permissions for multiple users at scale, see [What is entitlement management](/azure/active-directory/governance/entitlement-management-overview).|
43
-
|security information and event management (SIEM) data (Optional) |To include SIEM data with the extended detection and response (XDR) data, one or more tenants must include a Microsoft Sentinel workspace onboarded to unified security operations platform. For more information, see [Connect Microsoft Sentinel to Microsoft Defender XDR](microsoft-sentinel-onboard.md).<br/><br/>Only one Microsoft Sentinel workspace per tenant is currently supported in the unified security operations platform. So in multitenant management, you have SIEM data from one Microsoft Sentinel workspace per tenant.|
43
+
|Security information and event management (SIEM) data (Optional) |To include SIEM data with the extended detection and response (XDR) data, one or more tenants must include a Microsoft Sentinel workspace onboarded to the Microsoft unified security operations platform. For more information, see [Connect Microsoft Sentinel to Microsoft Defender XDR](microsoft-sentinel-onboard.md).<br/><br/>Only one Microsoft Sentinel workspace per tenant is currently supported in the unified security operations platform. So in Microsoft Defender multitenant management, you have SIEM data from one Microsoft Sentinel workspace per tenant.|
44
44
45
-
We recommend that you set up [multifactor authentication trust](/azure/active-directory/external-identities/authentication-conditional-access) for each tenant to avoid missing data in multitenant management for Microsoft Defender XDR and the unified security operations platform.
45
+
We recommend that you set up [multifactor authentication trust](/azure/active-directory/external-identities/authentication-conditional-access) for each tenant to avoid missing data in Microsoft Defender multitenant management.
46
46
47
47
48
48
## Verify your tenant access
49
49
50
-
In order to view and manage the data you have access to in multitenant management, you need to ensure you have the necessary permissions. For each tenant you want to view and manage, you need to either:
50
+
In order to view and manage the data you have access to in Microsoft Defender multitenant management, you need to ensure you have the necessary permissions. For each tenant you want to view and manage, you need to either:
51
51
52
52
-[Verify your tenant access with Microsoft Entra B2B](#verify-your-tenant-access-with-microsoft-entra-b2b)
53
53
-[Verify your tenant access with GDAP](#verify-your-tenant-access-with-gdap)
@@ -71,25 +71,25 @@ In order to view and manage the data you have access to in multitenant managemen
71
71
72
72
## Set up multitenant management
73
73
74
-
The first time you use multitenant management in Microsoft Defender XDR, you need setup the tenants you want to view and manage. To get started:
74
+
The first time you use Microsoft Defender multitenant management, you need setup the tenants you want to view and manage. To get started:
75
75
76
-
1. Sign in to [multitenant management in Microsoft Defender XDR](https://mto.security.microsoft.com/)
76
+
1. Sign in to [Microsoft Defender multitenant management](https://mto.security.microsoft.com/)
77
77
2. Select **Add tenants**.
78
78
79
-
:::image type="content" source="/defender/media/defender/mto-add-tenants.png" alt-text="Screenshot of the Microsoft Defender XDR multi-tenant portal setup screen" lightbox="/defender/media/defender/mto-add-tenants.png":::
79
+
:::image type="content" source="/defender/media/defender/mto-add-tenants.png" alt-text="Screenshot of the Microsoft Defender multi-tenant portal setup screen" lightbox="/defender/media/defender/mto-add-tenants.png":::
80
80
81
81
3. Choose the tenants you want to manage and select **Add**
82
82
83
83
>[!Note]
84
-
> The multi-tenant view in Microsoft Defender XDR currently has a limit of 50 target tenants.
84
+
> The Microsoft Defender multi-tenant view currently has a limit of 50 target tenants.
85
85
86
86
The features available in multitenant management now appear on the navigation bar and you're ready to view and manage security data across all your tenants.
87
87
88
-
:::image type="content" source="/defender/media/defender/mto-tenant-selection.png" alt-text="Screenshot of multi-tenant management in Microsoft Defender XDR" lightbox="/defender/media/defender/mto-tenant-selection.png":::
88
+
:::image type="content" source="/defender/media/defender/mto-tenant-selection.png" alt-text="Screenshot of Microsoft Defender multitenant management." lightbox="/defender/media/defender/mto-tenant-selection.png":::
89
89
90
90
## Next step
91
91
92
-
Use these articles to get started with multitenant management in Microsoft Defender XDR:
92
+
Use these articles to get started with Microsoft Defender multitenant management:
93
93
94
94
-[View and manage incidents and alerts](./mto-incidents-alerts.md)
0 commit comments