Skip to content

Commit 997568b

Browse files
committed
Update enable-attack-surface-reduction.md
1 parent 7f813ac commit 997568b

File tree

1 file changed

+5
-4
lines changed

1 file changed

+5
-4
lines changed

defender-endpoint/enable-attack-surface-reduction.md

Lines changed: 5 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -147,7 +147,9 @@ The following procedures for enabling attack surface reduction rules include ins
147147

148148
1. In the **Configuration settings** pane, select **Attack Surface Reduction** and then select the desired setting for each attack surface reduction rule.
149149

150-
1. Under **List of additional folders that need to be protected**, **List of apps that have access to protected folders**, and **Exclude files and paths from attack surface reduction rules**, enter individual files and folders. You can also select **Import** to import a CSV file that contains files and folders to exclude from attack surface reduction rules. Each line in the CSV file should be formatted as follows:
150+
1. Under **List of additional folders that need to be protected**, **List of apps that have access to protected folders**, and **Exclude files and paths from attack surface reduction rules**, enter individual files and folders.
151+
152+
You can also select **Import** to import a CSV file that contains files and folders to exclude from attack surface reduction rules. Each line in the CSV file should be formatted as follows:
151153

152154
`C:\folder`, `%ProgramFiles%\folder\file`, `C:\path`
153155

@@ -242,9 +244,8 @@ You can use Microsoft Intune OMA-URI to configure custom attack surface reductio
242244
Rules are active and live within minutes.
243245

244246
> [!NOTE]
245-
> Conflict handling:
246-
>
247-
> If you assign a device two different attack surface reduction policies, potential policy conflicts can occur, depending on whether rules are assigned different states, whether conflict management is in place, and whether the result is an error. Nonconflicting rules do not result in an error, and such rules are applied correctly. The first rule is applied, and subsequent nonconflicting rules are merged into the policy.
247+
> Regarding conflict handling, if you assign a device two different attack surface reduction policies, potential policy conflicts can occur, depending on whether rules are assigned different states, whether conflict management is in place, and whether the result is an error.
248+
> Nonconflicting rules do not result in an error, and such rules are applied correctly. The first rule is applied, and subsequent nonconflicting rules are merged into the policy.
248249
249250
### MDM
250251

0 commit comments

Comments
 (0)