You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
|[Hardware and firmware assessment](tvm-hardware-and-firmware.md)|-|✔|
103
-
|[Authenticated scan for Windows](windows-authenticated-scan.md)|-|✔|
103
+
|[Authenticated scan for Windows](windows-authenticated-scan.md)|-|✔**see note** <sup>2</sup>|
104
+
105
+
> [!IMPORTANT]
106
+
> <sup>2</sup> The Windows authenticated scan feature will be deprecated by the end of November 2025 and will not be supported beyond that date. More information about this change are in the [Windows authenticated scan deprecation FAQs](defender-vulnerability-management-faq.md#windows-authenticated-scan-deprecation-faqs).
### What license does the user need to benefit from Defender Vulnerability Management capabilities?
33
34
34
35
Microsoft Defender Vulnerability Management is available via two services:
35
36
36
-
1. Microsoft Defender for Endpoint Plan 2 customers can seamlessly enhance their existing generally available vulnerability management capabilities with the Microsoft Defender Vulnerability Management add-on. This service provides consolidated inventories, expanded asset coverage, cross-platform support, and new assessment and mitigation tools. To sign up for the free 90-day trial, see [Defender Vulnerability Management Add-on](get-defender-vulnerability-management.md#try-defender-vulnerability-management-add-on-trial-for-defender-for-endpoint-plan-2-customers).
37
+
1. Microsoft Defender for Endpoint Plan 2 customers can seamlessly enhance their existing generally available vulnerability management capabilities with the Defender Vulnerability Management add-on. This service provides consolidated inventories, expanded asset coverage, cross-platform support, and new assessment and mitigation tools. To sign up for the free 90-day trial, see [Defender Vulnerability Management Add-on](get-defender-vulnerability-management.md#try-defender-vulnerability-management-add-on-trial-for-defender-for-endpoint-plan-2-customers).
37
38
38
-
2.For new customers or existing Defender for Endpoint P1 or Microsoft 365 E3 customers looking for a risk-based vulnerability management solution, Microsoft Defender Vulnerability Management Standalone helps you efficiently discover, assess, and remediate vulnerabilities and misconfigurations in one place. To sign up for the free 90-day trial, see [Defender Vulnerability Management Standalone](get-defender-vulnerability-management.md#try-defender-vulnerability-management-standalone).
39
+
2. Defender Vulnerability Management Standalone helps you efficiently discover, assess, and remediate vulnerabilities and misconfigurations in one place. This is recommended for new customers or existing Defender for Endpoint P1 or Microsoft 365 E3 customers. To sign up for the free 90-day trial, see [Defender Vulnerability Management Standalone](get-defender-vulnerability-management.md#try-defender-vulnerability-management-standalone).
39
40
40
41
### Do I need to assign Defender Vulnerability Management licenses to users in my organization as instructed in the admin center?
41
42
@@ -58,18 +59,18 @@ For new customers or existing Defender for Endpoint P1 or Microsoft 365 E3 custo
58
59
59
60
### How is the service provisioned/deployed?
60
61
61
-
Once a customer is onboarded on to the free-trial experience, Defender Vulnerability Management features are turned on by default at the tenant level for all users within the organization.
62
+
Defender Vulnerability Management features are turned on by default at the tenant level for all users within the organization once a customer is onboarded to the free-trial experience.
62
63
63
-
### If a customer is in public preview, what will happen to their premium capabilities if I don't sign up for a free trial?
64
+
### If a customer is in public preview, what happens to their premium capabilities if they don't sign up for a free trial?
64
65
65
-
The new capabilities will be available only to customers who onboard a trial. Customers who haven't onboarded will lose access to these capabilities. Blocked applications will be immediately unblocked. Security baseline profiles may be stored for a short additional time before being deleted.
66
+
The new capabilities are available only to customers who onboard a trial. Customers who aren't onboarded lose access to these capabilities. Blocked applications are immediately unblocked. Security baseline profiles may be stored for a short period before being deleted.
66
67
67
68
### How long does the trial last and what happens at the end of my trial?
68
69
69
70
- The Defender Vulnerability Management add-on trial lasts for 90 days.
70
71
- The Defender Vulnerability Management Standalone trial lasts for 90 days.
71
72
72
-
After your trial ends, you'll have a 30 day grace period of active trial before the license becomes suspended. When the trial is suspended, you'll retain your security baselines, but you may lose access to your portal and your blocked applications may become unblocked.
73
+
After your trial ends, you have a 30 day grace period of active trial before the license becomes suspended. When the trial is suspended, you retain your security baselines, but you may lose access to your portal and your blocked applications may become unblocked.
73
74
74
75
After 180 days, your license will be deactivated and your profiles will be deleted.
75
76
@@ -84,7 +85,7 @@ Examples of recommendations where you might not see a mitigation action (such as
84
85
- Recommendations related to operating systems
85
86
- Recommendations related to apps for macOS and Linux
86
87
87
-
It's also possible that your organization has reached the maximum indicator capacity of 15,000. If this is the case, you will need to free up space by deleting old indicators. To learn more, see [Manage indicators](/defender-endpoint/indicator-manage).
88
+
It's also possible that your organization reached the maximum indicator capacity of 15,000. If so, you need to free up space by deleting old indicators. To learn more, see [Manage indicators](/defender-endpoint/indicator-manage).
88
89
89
90
### Does blocking vulnerable apps work on all devices?
90
91
@@ -96,16 +97,16 @@ This feature is supported on Windows devices (1809 or later) with the latest Win
96
97
97
98
There's currently support for:
98
99
99
-
- Center for Internet Security (CIS) benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and above.
100
+
- Center for Internet Security (CIS) benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and later.
100
101
- Security Technical Implementation Guides (STIG) benchmarks for Windows 10 and Windows Server 2019.
101
102
102
103
Upcoming support:
103
104
104
-
- Microsoft benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and above will be available in an upcoming release.
105
+
- Microsoft benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and later will be available in an upcoming release.
105
106
106
107
### What operating systems can I measure using security baseline assessments?
107
108
108
-
Currently Windows is supported, but coverage will be expanded to cover more operating systems such as Mac and Linux.
109
+
Currently Windows is supported, but coverage will be expanded to more operating systems like Mac and Linux.
109
110
110
111
## Defender Vulnerability Management general FAQs
111
112
@@ -119,4 +120,46 @@ Microsoft Defender Vulnerability Management is available as a vulnerability mana
119
120
120
121
### Can I turn on Defender Vulnerability Management capabilities on a subset of devices in my organization?
121
122
122
-
There isn't a way to selectively light up the Defender Vulnerability Management assessment capabilities (block vulnerable applications, browser extension, certificate inventory, and network share assessment) on a subset of devices in a given tenant.
123
+
Capabilities like blocking vulnerable applications, browser extension, certificate inventory, and network share assessment can't be selectively turned on for a subset of devices in a given tenant.
124
+
125
+
## Windows authenticated scan deprecation FAQs
126
+
127
+
### When does the deprecation process begin and end?
128
+
129
+
The [Windows authenticated scan](windows-authenticated-scan.md) deprecation process begins on November 2024 and will last for 12 months, concluding on November 30, 2025. During this period, support is limited to existing customers only. New customers will not have access to this capability.
130
+
131
+
### Why is this product being deprecated?
132
+
133
+
The deprecation is to streamline offerings and focus on features that provide greater value to customers. This change allows our teams to allocate resources to innovations that better meet customer needs. We understand transitions can be challenging, and we're here to support you throughout the process. Let us know if you have any questions or need assistance.
134
+
135
+
### When will the product be officially deprecated?
136
+
137
+
Windows authenticated scan will officially be deprecated on November 30, 2025. After this date, the capability will no longer be supported nor be available to customers.
138
+
139
+
### What happens to my data after the product is deprecated?
140
+
141
+
All user data is handled according to our [data storage and privacy policy](tvm-prerequisites.md#data-storage-and-privacy). We recommend that you export any important data before the deprecation date.
142
+
143
+
### Will the product be replaced?
144
+
145
+
There is no direct replacement for the Windows authenticated scan at this time. However, we are continuously evaluating our offerings and exploring opportunities for future development. We appreciate your understanding. Stay tuned for updates on new features and capabilities.
146
+
147
+
### Will support still be available after the deprecation date?
148
+
149
+
The development team will assist with any support tickets regarding Windows authenticated scan until the end of November 2025. However, no new features will be deployed. Support for the deprecated product ends on November 30, 2025. We encourage you to reach out with any questions before this date.
150
+
151
+
### What steps should I take to prepare for the deprecation?
152
+
153
+
We recommend reviewing your current usage of the Windows authenticated scan and identifying any critical data you rely on. Ensure that you export any important data before the deprecation date.
154
+
155
+
### Will I receive notifications about the deprecation process?
156
+
157
+
Yes. We will send out regular updates and reminders via the Message Center to all affected customers as the deprecation date approaches. Ensure your contact information is up to date in our system to receive these notifications.
158
+
159
+
### Can I still access the product during the deprecation period?
160
+
161
+
Yes. You can continue to access the Windows authenticated scan and use its features until the deprecation date of November 30, 2025. However, note that new customers will not be able to gain access during this time.
162
+
163
+
### How can I provide feedback about this change?
164
+
165
+
You can send your feedback through the relevant channels. We value your input and your feedback helps us improve our future products.
Copy file name to clipboardExpand all lines: defender-vulnerability-management/whats-new-in-microsoft-defender-vulnerability-management.md
+6-3Lines changed: 6 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -11,7 +11,7 @@ audience: ITPro
11
11
ms.collection:
12
12
- m365-security
13
13
ms.topic: conceptual
14
-
ms.date: 07/09/2024
14
+
ms.date: 11/07/2024
15
15
---
16
16
17
17
# What's new in Microsoft Defender Vulnerability Management
@@ -21,10 +21,13 @@ This article provides information about new features and important product updat
21
21
> [!TIP]
22
22
> Did you know you can try all the features in Microsoft Defender Vulnerability Management for free? Find out how to [sign up for a free trial](defender-vulnerability-management-trial.md).
23
23
24
-
## July 2024
24
+
## November 2024
25
+
26
+
- The deprecation process of the Windows authenticated scan will begin on November 2024 and concludes on November 30, 2025. For more information, see [Windows authenticated scan deprecation FAQs](defender-vulnerability-management-faq.md#windows-authenticated-scan-deprecation-faqs).
25
27
26
-
- (GA) Learning hub resources have moved from the Microsoft Defender portal to [learn.microsoft.com](https://go.microsoft.com/fwlink/?linkid=2273118). Access Microsoft Defender XDR Ninja training, learning paths, training modules and more. Browse the [list of learning paths](/training/browse/?products=m365-ems-cloud-app-security%2Cdefender-for-cloud-apps%2Cdefender-identity%2Cm365-information-protection%2Cm365-threat-protection%2Cmdatp%2Cdefender-office365&expanded=m365%2Coffice-365), and filter by product, role, level, and subject.
28
+
## July 2024
27
29
30
+
- (GA) Learning hub resources have moved from the Microsoft Defender portal to [learn.microsoft.com](https://go.microsoft.com/fwlink/?linkid=2273118). Access Microsoft Defender XDR Ninja training, learning paths, training modules and more. Browse the [list of learning paths](/training/browse/?products=m365-ems-cloud-app-security%2Cdefender-for-cloud-apps%2Cdefender-identity%2Cm365-information-protection%2Cm365-threat-protection%2Cmdatp%2Cdefender-office365&expanded=m365%2Coffice-365), and filter by product, role, level, and subject.
Copy file name to clipboardExpand all lines: defender-vulnerability-management/windows-authenticated-scan.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -9,7 +9,7 @@ audience: Admin
9
9
ms.topic: conceptual
10
10
ms.service: defender-vuln-mgmt
11
11
ms.localizationpriority: medium
12
-
ms.date: 11/03/2024
12
+
ms.date: 11/07/2024
13
13
ms.collection:
14
14
- m365-security
15
15
- Tier1
@@ -25,7 +25,7 @@ ms.collection:
25
25
-[Microsoft Defender for Servers Plan 2](/azure/defender-for-cloud/plan-defender-for-servers-select-plan)
26
26
27
27
> [!IMPORTANT]
28
-
> This feature will be deprecated by the end of November 2025 and will not be supported beyond that date. Reach out to Microsoft Support for more information or assistance.
28
+
> This feature will be deprecated by the end of November 2025 and will not be supported beyond that date. More information about this change are in the [Windows authenticated scan deprecation FAQs](defender-vulnerability-management-faq.md#windows-authenticated-scan-deprecation-faqs).
29
29
30
30
Authenticated scan for Windows provides the ability to run scans on unmanaged Windows devices. You can remotely target by IP ranges or hostnames and scan Windows services by providing Microsoft Defender Vulnerability Management with credentials to remotely access the devices. Once configured the targeted unmanaged devices will be scanned regularly for software vulnerabilities. By default, the scan will run every four hours with options to change this interval or have it only run once.
0 commit comments