You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/mac-jamfpro-policies.md
+22-17Lines changed: 22 additions & 17 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -14,7 +14,7 @@ ms.collection:
14
14
ms.topic: conceptual
15
15
ms.subservice: macos
16
16
search.appverid: met150
17
-
ms.date: 05/20/2024
17
+
ms.date: 08/26/2024
18
18
---
19
19
20
20
# Set up the Microsoft Defender for Endpoint on macOS policies in Jamf Pro
@@ -31,7 +31,10 @@ Use this article to set up policies for Defender for Endpoint on Mac using Jamf
31
31
32
32
## Step 1: Get the Microsoft Defender for Endpoint onboarding package
33
33
34
-
1. In [Microsoft Defender XDR](https://security.microsoft.com), navigate to **Settings > Endpoints > Onboarding**.
34
+
> [!IMPORTANT]
35
+
> You must have an appropriate role assigned to view, manage, and onboard devices. For more information, see [Manage access to Microsoft Defender XDR with Microsoft Entra global roles](/defender-xdr/m365d-permissions#manage-access-to-microsoft-defender-xdr-with-microsoft-entra-global-roles).
36
+
37
+
1. In the [Microsoft Defender Portal](https://security.microsoft.com), navigate to **Settings** > **Endpoints** > **Onboarding**.
35
38
36
39
2. Select macOS as the operating system and Mobile Device Management / Microsoft Intune as the deployment method.
37
40
@@ -53,7 +56,7 @@ Use this article to set up policies for Defender for Endpoint on Mac using Jamf
53
56
54
57
:::image type="content" source="media/jamf-pro-configure-profile.png" alt-text="The page on which you create a new Jamf Pro dashboard." lightbox="media/jamf-pro-configure-profile.png":::
55
58
56
-
3.Enter the following details in the **General** tab:
59
+
3.On the **General** tab, specify the following details:
57
60
58
61
-**Name**: `MDE onboarding for macOS`
59
62
-**Description**: `MDE EDR onboarding for macOS`
@@ -144,7 +147,7 @@ Note that you must use exact `com.microsoft.wdav` as the **Preference Domain**;
2. Create a new configuration profile. Under **Computers**, go to **Configuration Profiles**, and then specify the following details on the **General** tab:
150
+
2. Create a new configuration profile. Under **Computers**, go to **Configuration Profiles**, and then, on the **General** tab, specify the following details:
148
151
149
152
:::image type="content" source="media/644e0f3af40c29e80ca1443535b2fe32.png" alt-text="A new profile." lightbox="media/644e0f3af40c29e80ca1443535b2fe32.png":::
150
153
@@ -325,7 +328,7 @@ Microsoft Defender for Endpoint adds new settings over time. These new settings
325
328
326
329
:::image type="content" source="media/644e0f3af40c29e80ca1443535b2fe32.png" alt-text="The page displaying a new profile." lightbox="media/644e0f3af40c29e80ca1443535b2fe32.png":::
327
330
328
-
4. Enter the following details on the **General** tab:
331
+
4. On the **General** tab, specify the following details:
329
332
330
333
- **Name**: `MDATP MDAV configuration settings`
331
334
- **Description**: `<blank>`
@@ -394,11 +397,12 @@ Microsoft Defender for Endpoint adds new settings over time. These new settings
394
397
395
398
## Step 4: Configure notifications settings
396
399
397
-
These steps are applicable on macOS 11 (Big Sur) or later.
400
+
> [!NOTE]
401
+
> These steps are applicable on macOS 11 (Big Sur) or later. Even though Jamf supports notifications on macOS version 10.15 or later, Defender for Endpoint on Mac requires macOS 11 or later.
398
402
399
403
1. In the Jamf Pro dashboard, select **Computers**, then **Configuration Profiles**.
400
404
401
-
2. Select **New**, and enter the following details in the **General** tab for **Options**:
405
+
2. Select **New**, and then, on the **General** tab, for **Options**, specify the following details:
402
406
403
407
- **Name**: `MDATP MDAV Notification settings`
404
408
- **Description**: `macOS 11 (Big Sur) or later`
@@ -408,7 +412,7 @@ These steps are applicable on macOS 11 (Big Sur) or later.
408
412
409
413
:::image type="content" source="media/c9820a5ff84aaf21635c04a23a97ca93.png" alt-text="The new macOS configuration profile page." lightbox="media/c9820a5ff84aaf21635c04a23a97ca93.png":::
410
414
411
-
- Tab **Notifications**, select **Add**, and enter the following values:
415
+
- On the **Notifications** tab, select **Add**, and specify the following values:
412
416
- **Bundle ID**: `com.microsoft.wdav.tray`
413
417
- **Critical Alerts**: Select **Disable**
414
418
- **Notifications**: Select **Enable**
@@ -419,7 +423,7 @@ These steps are applicable on macOS 11 (Big Sur) or later.
4. Enter the following details on the **General** tab:
479
+
4. On the **General** tab, specify the following details:
476
480
477
481
- **Name**: `MDATP MDAV MAU settings`
478
482
- **Description**: `Microsoft AutoUpdate settings for MDATP for macOS`
@@ -531,7 +535,7 @@ These steps are applicable on macOS 11 (Big Sur) or later.
531
535
532
536
2. Select **+ New**.
533
537
534
-
3. Enter the following details on the **General** tab:
538
+
3. On the **General** tab, specify the following details:
535
539
536
540
- **Name**: `MDATP MDAV - grant Full Disk Access to EDR and AV`
537
541
- **Description**: `On macOS 11 (Big Sur) or later, the new Privacy Preferences Policy Control`
@@ -619,7 +623,7 @@ Alternatively, you can download [fulldisk.mobileconfig](https://github.com/micro
619
623
620
624
:::image type="content" source="media/6c8b406ee224335a8c65d06953dc756e.png" alt-text="The automatically generated social media post's description." lightbox="media/6c8b406ee224335a8c65d06953dc756e.png":::
621
625
622
-
2. Enter the following details on the **General** tab:
626
+
2. On the **General** tab, specify the following details:
623
627
624
628
- **Name**: `MDATP MDAV System Extensions`
625
629
- **Description**: `MDATP system extensions`
@@ -666,22 +670,23 @@ Alternatively, you can download [fulldisk.mobileconfig](https://github.com/micro
666
670
667
671
## Step 8: Configure Network Extension
668
672
669
-
As part of the Endpoint Detection and Response capabilities, Microsoft Defender for Endpoint on macOS inspects socket traffic and reports this information to the Microsoft Defender portal. The following policy allows the network extension to perform this functionality.
673
+
As part of the Endpoint Detection and Response capabilities, Microsoft Defender for Endpoint on macOS inspects socket traffic and reports this information to the Microsoft Defender portal.
670
674
671
-
These steps are applicable on macOS 11 (Big Sur) or later.
675
+
> [!NOTE]
676
+
> These steps are applicable on macOS 11 (Big Sur) or later. Even though Jamf supports notifications on macOS version 10.15 or later, Defender for Endpoint on Mac requires macOS 11 or later.
672
677
673
678
1. In the Jamf Pro dashboard, select**Computers**,then**Configuration Profiles**.
674
679
675
680
2. Select **New**, and enter the following details for**Options**:
676
681
677
-
- Tab **General**:
682
+
- On the **General** tab, specify the following values:
0 commit comments