You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
6.[Set up the Microsoft Defender for Endpoint evaluation lab](#step-6-set-up-the-microsoft-defender-for-endpoint-evaluation-lab).
66
+
6.[Visit the Microsoft Defender portal](#step-6-visit-the-microsoft-defender-portal).
67
67
68
68
## Step 1: Confirm your license state
69
69
@@ -109,14 +109,13 @@ This section outlines the general steps you to onboard devices (endpoints).
109
109
110
110
After onboarding devices (endpoints), you'll configure the various capabilities, such as endpoint detection and response, next-generation protection, and attack surface reduction.
111
111
112
-
Use [this table](onboarding.md) to choose components to configure. We recommend configuring all available capabilities, but you're able to skip the ones that don't apply.
112
+
Use [the device onboarding table](onboarding.md) to choose components to configure. We recommend configuring all available capabilities, but you're able to skip the ones that don't apply.
113
113
114
-
## Step 6: Set up the Microsoft Defender for Endpoint evaluation lab
114
+
After you have onboarded devices, [run a detection test](run-detection-test.md).
115
115
116
-
The Microsoft Defender for Endpoint evaluation lab is designed to eliminate the complexities of device and environment configuration so that you can focus on evaluating the capabilities of the platform, running simulations, and seeing the prevention, detection, and remediation features in action. Using the simplified set-up experience in evaluation lab, you can focus on running your own test scenarios and the pre-made simulations to see how Defender for Endpoint performs.
116
+
## Step 6: Visit the Microsoft Defender portal
117
117
118
-
-[Watch the video overview](https://www.microsoft.com/videoplayer/embed/RE4qLUM) of the evaluation lab
119
-
-[Get started with the lab](evaluate-microsoft-defender-antivirus.md)
118
+
The Microsoft Defender portal ([https://security.microsoft.com](https://security.microsoft.com)) is a central location where you can view onboarded devices, security recommendations, detected threats, alerts, and more. To get started, see [Microsoft Defender portal](/defender-xdr/microsoft-365-defender-portal).
Copy file name to clipboardExpand all lines: defender-endpoint/mac-install-with-intune.md
+31-39Lines changed: 31 additions & 39 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -14,7 +14,7 @@ ms.collection:
14
14
ms.topic: conceptual
15
15
ms.subservice: macos
16
16
search.appverid: met150
17
-
ms.date: 08/21/2024
17
+
ms.date: 09/12/2024
18
18
---
19
19
20
20
# Deploy Microsoft Defender for Endpoint on macOS with Microsoft Intune
@@ -63,34 +63,40 @@ In the [Microsoft Intune admin center](https://go.microsoft.com/fwlink/?linkid=2
63
63
64
64
1. Under **Configuration profiles**, select **Create Profile**.
65
65
66
-
This profile is needed for Big Sur (11) or later. It's ignored on older versions of macOS, because they use the kernel extension.
67
-
68
66
1. On the **Policies** tab, select **Create** > **New Policy**.
69
67
70
68
1. Under **Platform**, select **macOS**.
71
69
72
-
1. Under **Profile type**, select **Templates**.
73
-
74
-
1. Under **Template name**, select **Extensions**.
70
+
1. Under **Profile type**, select **Settings catalog**.
75
71
76
72
1. Select **Create**.
77
73
78
-
1. On the **Basics** tab, **Name** the profile. For example, `SysExt-prod-macOS-Default-MDE`.
74
+
1. On the **Basics** tab, **Name** the profile and enter a **Description.**
79
75
80
76
1. Select **Next**.
81
77
82
-
1. On the **Configuration settings** tab, expand **System Extensions** and add the following entries in the **Allowed system extensions** section:
78
+
1. On the **Configuration settings tab,** select **+Add settings.**
83
79
84
-
|Bundle identifier|Team identifier|
85
-
|---|---|
86
-
|`com.microsoft.wdav.epsext`|`UBF8T346G9`|
87
-
|`com.microsoft.wdav.netext`|`UBF8T346G9`|
80
+
1. Under **Template name**, select **Extensions**.
81
+
82
+
1. In the **Settings picker**, expand the **System Configuration** category, and then select **System Extensions** > **Allowed System Extensions:**
83
+
84
+

85
+
86
+
1. Close the Settings picker, and then select **+ Edit instance**.
87
+
88
+
1. Configure the following entries in the **Allowed system extensions** section:
89
+
90
+
|Allowed System Extensions|Team Identifier|
91
+
|---|---|
92
+
|`com.microsoft.wdav.epsext`|`UBF8T346G9`|
93
+
|`com.microsoft.wdav.netext`|`UBF8T346G9`|
94
+
95
+

88
96
89
-
:::image type="content" source="../defender-endpoint/media/mac-system-extension-intune2.png" alt-text="Screenshot that shows the settings of the system's extension." lightbox="../defender-endpoint/media/mac-system-extension-intune2.png":::
90
-
91
97
1. Select **Next**.
92
98
93
-
1. On the **Assignments** tab, assign the profile to a group where the macOS devices and/or users are located, or **All Users** and **All devices**.
99
+
1. On the **Assignments** tab, assign the profile to a group where the macOS devices or users are located.
94
100
95
101
1. Review the configuration profile. Select **Create**.
96
102
@@ -572,27 +578,13 @@ See [Uninstalling](mac-resources.md#uninstalling) for details on how to remove M
572
578
573
579
## Recommended content
574
580
575
-
[Add Microsoft Defender for Endpoint to macOS devices using Microsoft Intune](/mem/intune/apps/apps-advanced-threat-protection-macos?source=recommendations)
576
-
577
-
Learn about adding Microsoft Defender for Endpoint to macOS devices using Microsoft Intune.
578
-
579
-
[Examples of device control policies for Intune](mac-device-control-intune.md)
580
-
<br>Learn how to use device control policies using examples that can be used with Intune.
581
-
582
-
[Configure Microsoft Defender for Endpoint on iOS features](ios-configure-features.md)
583
-
<br>Describes how to deploy Microsoft Defender for Endpoint on iOS features.
584
-
585
-
[Deploy Microsoft Defender for Endpoint on iOS with Microsoft Intune](ios-install.md)
586
-
<br>Describes how to deploy Microsoft Defender for Endpoint on iOS using an app.
587
-
588
-
[Configure Microsoft Defender for Endpoint in Microsoft Intune](/mem/intune/protect/advanced-threat-protection-configure?source=recommendations)
589
-
<br>Describes connecting to Defender for Endpoint, onboarding devices, assigning compliance for risk levels, and conditional access policies.
590
-
591
-
[Troubleshoot issues and find answers on FAQs related to Microsoft Defender for Endpoint on iOS](ios-troubleshoot.md)
592
-
<br>Troubleshooting and FAQ - Microsoft Defender for Endpoint on iOS.
593
-
594
-
[Configure Microsoft Defender for Endpoint on Android features](android-configure.md)
595
-
<br>Describes how to configure Microsoft Defender for Endpoint on Android.
596
-
597
-
[Manage Defender for Endpoint on Android devices in Intune - Azure](/mem/intune/protect/advanced-threat-protection-manage-android?source=recommendations)
598
-
<br>Configure Microsoft Defender for Endpoint web protection on Android devices managed by Microsoft Intune.
581
+
|Article | Description |
582
+
|---|---|
583
+
|[Add Microsoft Defender for Endpoint to macOS devices using Microsoft Intune](/mem/intune/apps/apps-advanced-threat-protection-macos?source=recommendations)| Learn about adding Microsoft Defender for Endpoint to macOS devices using Microsoft Intune |
584
+
|[Examples of device control policies for Intune](mac-device-control-intune.md)| Learn how to use device control policies using examples that can be used with Intune |
585
+
|[Configure Microsoft Defender for Endpoint on iOS features](ios-configure-features.md)| Describes how to deploy Microsoft Defender for Endpoint on iOS features |
586
+
|[Deploy Microsoft Defender for Endpoint on iOS with Microsoft Intune](ios-install.md)| Describes how to deploy Microsoft Defender for Endpoint on iOS using an app |
587
+
|[Configure Microsoft Defender for Endpoint in Microsoft Intune](/mem/intune/protect/advanced-threat-protection-configure?source=recommendations)| Describes connecting to Defender for Endpoint, onboarding devices, assigning compliance for risk levels, and conditional access policies |
588
+
|[Troubleshoot issues and find answers on FAQs related to Microsoft Defender for Endpoint on iOS](ios-troubleshoot.md)| Troubleshooting and FAQ - Microsoft Defender for Endpoint on iOS |
589
+
|[Configure Microsoft Defender for Endpoint on Android features](android-configure.md)| Describes how to configure Microsoft Defender for Endpoint on Android |
590
+
|[Manage Defender for Endpoint on Android devices in Intune - Azure](/mem/intune/protect/advanced-threat-protection-manage-android?source=recommendations)| Configure Microsoft Defender for Endpoint web protection on Android devices managed by Microsoft Intune |
0 commit comments