Skip to content

Commit b7f1a1c

Browse files
committed
Merge branch 'M1_changes' of https://github.com/DebLanger/defender-docs-pr into M1_changes
2 parents def2e9f + 18364a1 commit b7f1a1c

File tree

77 files changed

+1299
-2511
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

77 files changed

+1299
-2511
lines changed

.openpublishing.redirection.defender-identity.json

Lines changed: 246 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -869,6 +869,252 @@
869869
"source_path": "defender-for-identity/support.md",
870870
"redirect_url": "/defender-xdr/contact-defender-support",
871871
"redirect_document_id": false
872+
},
873+
{
874+
"source_path": "defender-for-identity/assign-multi-factor-authentication-okta-privileged-user-accounts.md",
875+
"redirect_url": "/defender-for-identity/security-posture-assessments/cloud-identities",
876+
"redirect_document_id": false
877+
},
878+
{
879+
"source_path": "defender-for-identity/change-okta-password-privileged-user-accounts.md",
880+
"redirect_url": "/defender-for-identity/security-posture-assessments/cloud-identities",
881+
"redirect_document_id": false
882+
},
883+
{
884+
"source_path": "defender-for-identity/high-number-of-okta-accounts-with-privileged-role-assigned.md",
885+
"redirect_url": "/defender-for-identity/security-posture-assessments/cloud-identities",
886+
"redirect_document_id": false
887+
},
888+
{
889+
"source_path": "defender-for-identity/highly-privileged-okta-api-token.md",
890+
"redirect_url": "/defender-for-identity/security-posture-assessments/cloud-identities",
891+
"redirect_document_id": false
892+
},
893+
{
894+
"source_path": "defender-for-identity/limit-number-okta-super-admin-accounts.md",
895+
"redirect_url": "/defender-for-identity/security-posture-assessments/cloud-identities",
896+
"redirect_document_id": false
897+
},
898+
{
899+
"source_path": "defender-for-identity/remove-dormant-okta-privileged-accounts.md",
900+
"redirect_url": "/defender-for-identity/security-posture-assessments/cloud-identities",
901+
"redirect_document_id": false
902+
},
903+
{
904+
"source_path": "defender-for-identity/accounts-with-non-default-pgid.md",
905+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
906+
"redirect_document_id": false
907+
},
908+
{
909+
"source_path": "defender-for-identity/security-assessment-remove-suspicious-access-rights.md",
910+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
911+
"redirect_document_id": false
912+
},
913+
{
914+
"source_path": "defender-for-identity/change-password-krbtgt-account.md",
915+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
916+
"redirect_document_id": false
917+
},
918+
{
919+
"source_path": "defender-for-identity/change-password-domain-administrator-account.md",
920+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
921+
"redirect_document_id": false
922+
},
923+
{
924+
"source_path": "defender-for-identity/security-assessment-dormant-entities.md",
925+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
926+
"redirect_document_id": false
927+
},
928+
{
929+
"source_path": "defender-for-identity/security-assessment-non-admin-accounts-dcsync.md",
930+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
931+
"redirect_document_id": false
932+
},
933+
{
934+
"source_path": "defender-for-identity/ensure-privileged-accounts-with-sensitive-flag.md",
935+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
936+
"redirect_document_id": false
937+
},
938+
{
939+
"source_path": "defender-for-identity/security-assessment-clear-text.md",
940+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
941+
"redirect_document_id": false
942+
},
943+
{
944+
"source_path": "defender-for-identity/security-assessment-laps.md",
945+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
946+
"redirect_document_id": false
947+
},
948+
{
949+
"source_path": "defender-for-identity/remove-discoverable-passwords-active-directory-account-attributes.md",
950+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
951+
"redirect_document_id": false
952+
},
953+
{
954+
"source_path": "defender-for-identity/remove-inactive-service-account.md",
955+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
956+
"redirect_document_id": false
957+
},
958+
{
959+
"source_path": "defender-for-identity/security-assessment-riskiest-lmp.md",
960+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
961+
"redirect_document_id": false
962+
},
963+
{
964+
"source_path": "defender-for-identity/security-assessment-unconstrained-kerberos.md",
965+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
966+
"redirect_document_id": false
967+
},
968+
{
969+
"source_path": "defender-for-identity/security-assessment-unsecure-sid-history-attribute.md",
970+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
971+
"redirect_document_id": false
972+
},
973+
{
974+
"source_path": "defender-for-identity/security-assessment-unsecure-account-attributes.md",
975+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
976+
"redirect_document_id": false
977+
},
978+
{
979+
"source_path": "defender-for-identity/security-assessment-weak-cipher.md",
980+
"redirect_url": "/defender-for-identity/security-posture-assessments/accounts",
981+
"redirect_document_id": false
982+
},
983+
{
984+
"source_path": "defender-for-identity/security-assessment-enforce-encryption-rpc.md",
985+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
986+
"redirect_document_id": false
987+
},
988+
{
989+
"source_path": "defender-for-identity/security-assessment-insecure-adcs-certificate-enrollment.md",
990+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
991+
"redirect_document_id": false
992+
},
993+
{
994+
"source_path": "defender-for-identity/security-assessment-edit-misconfigured-owner.md",
995+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
996+
"redirect_document_id": false
997+
},
998+
{
999+
"source_path": "defender-for-identity/security-assessment-edit-misconfigured-ca-acl.md",
1000+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
1001+
"redirect_document_id": false
1002+
},
1003+
{
1004+
"source_path": "defender-for-identity/security-assessment-edit-misconfigured-acl.md",
1005+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
1006+
"redirect_document_id": false
1007+
},
1008+
{
1009+
"source_path": "defender-for-identity/security-assessment-edit-misconfigured-enrollment-agent.md",
1010+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
1011+
"redirect_document_id": false
1012+
},
1013+
{
1014+
"source_path": "defender-for-identity/security-assessment-edit-overly-permissive-template.md",
1015+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
1016+
"redirect_document_id": false
1017+
},
1018+
{
1019+
"source_path": "defender-for-identity/prevent-certificate-enrollment-esc15.md",
1020+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
1021+
"redirect_document_id": false
1022+
},
1023+
{
1024+
"source_path": "defender-for-identity/security-assessment-prevent-users-request-certificate.md",
1025+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
1026+
"redirect_document_id": false
1027+
},
1028+
{
1029+
"source_path": "defender-for-identity/security-assessment-edit-vulnerable-ca-setting.md",
1030+
"redirect_url": "/defender-for-identity/security-posture-assessments/certificates",
1031+
"redirect_document_id": false
1032+
},
1033+
{
1034+
"source_path": "defender-for-identity/gpo-assigns-unprivileged-identities.md",
1035+
"redirect_url": "/defender-for-identity/security-posture-assessments/group-policy",
1036+
"redirect_document_id": false
1037+
},
1038+
{
1039+
"source_path": "defender-for-identity/modified-unprivileged-accounts-gpo.md",
1040+
"redirect_url": "/defender-for-identity/security-posture-assessments/group-policy",
1041+
"redirect_document_id": false
1042+
},
1043+
{
1044+
"source_path": "defender-for-identity/reversible-passwords-group-policy.md",
1045+
"redirect_url": "/defender-for-identity/security-posture-assessments/group-policy",
1046+
"redirect_document_id": false
1047+
},
1048+
{
1049+
"source_path": "defender-for-identity/built-in-active-directory-guest-account-is-enabled.md",
1050+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1051+
"redirect_document_id": false
1052+
},
1053+
{
1054+
"source_path": "defender-for-identity/domain-controller-account-password-change.md",
1055+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1056+
"redirect_document_id": false
1057+
},
1058+
{
1059+
"source_path": "defender-for-identity/security-assessment-print-spooler.md",
1060+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1061+
"redirect_document_id": false
1062+
},
1063+
{
1064+
"source_path": "defender-for-identity/security-assessment-remove-local-admins.md",
1065+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1066+
"redirect_document_id": false
1067+
},
1068+
{
1069+
"source_path": "defender-for-identity/security-assessment-unmonitored-domain-controller.md",
1070+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1071+
"redirect_document_id": false
1072+
},
1073+
{
1074+
"source_path": "defender-for-identity/unmonitored-active-directory-certificate-services-server.md",
1075+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1076+
"redirect_document_id": false
1077+
},
1078+
{
1079+
"source_path": "defender-for-identity/unmonitored-active-directory-federation-services-servers.md",
1080+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1081+
"redirect_document_id": false
1082+
},
1083+
{
1084+
"source_path": "defender-for-identity/unmonitored-entra-connect-servers.md",
1085+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1086+
"redirect_document_id": false
1087+
},
1088+
{
1089+
"source_path": "defender-for-identity/security-assessment-unsecure-domain-configurations.md",
1090+
"redirect_url": "/defender-for-identity/security-posture-assessments/identity-infrastructure",
1091+
"redirect_document_id": false
1092+
},
1093+
{
1094+
"source_path": "defender-for-identity/remove-replication-permissions-microsoft-entra-connect.md",
1095+
"redirect_url": "/defender-for-identity/security-posture-assessments/hybrid-security",
1096+
"redirect_document_id": false
1097+
},
1098+
{
1099+
"source_path": "defender-for-identity/remove-unsafe-permissions-sensitive-entra-connect.md",
1100+
"redirect_url": "/defender-for-identity/security-posture-assessments/hybrid-security",
1101+
"redirect_document_id": false
1102+
},
1103+
{
1104+
"source_path": "defender-for-identity/replace-entra-connect-default-admin.md",
1105+
"redirect_url": "/defender-for-identity/security-posture-assessments/hybrid-security",
1106+
"redirect_document_id": false
1107+
},
1108+
{
1109+
"source_path": "defender-for-identity/change-password-microsoft-entra-seamless-single-sign-on.md",
1110+
"redirect_url": "/defender-for-identity/security-posture-assessments/hybrid-security",
1111+
"redirect_document_id": false
1112+
},
1113+
{
1114+
"source_path": "defender-for-identity/rotate-password-microsoft-entra-connect.md",
1115+
"redirect_url": "/defender-for-identity/security-posture-assessments/hybrid-security",
1116+
"redirect_document_id": false
8721117
}
1118+
8731119
]
8741120
}

defender-endpoint/TOC.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@
88
items:
99
- name: What is Microsoft Defender for Endpoint?
1010
items:
11-
- name: Defender for Endpoint on Windows
11+
- name: Defender for Endpoint
1212
href: microsoft-defender-endpoint.md
1313
- name: Defender for Endpoint on macOS
1414
href: microsoft-defender-endpoint-mac.md

defender-endpoint/android-configure.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ ms.collection:
1515
ms.topic: how-to
1616
ms.subservice: android
1717
search.appverid: met150
18-
ms.date: 10/23/2025
18+
ms.date: 11/06/2025
1919
appliesto:
2020
- Microsoft Defender for Endpoint Plan 1
2121
- Microsoft Defender for Endpoint Plan 2
@@ -33,7 +33,7 @@ For more information about how to set up Defender for Endpoint on Android and Co
3333
## Configure custom indicators
3434

3535
> [!NOTE]
36-
> Defender for Endpoint on Android only supports creating custom indicators for IP addresses and URLs/domains.
36+
> Defender for Endpoint on Android supports creating custom indicators only for URLs and domains. IP-based custom indicators aren't supported on Android.
3737
>
3838
> IP `245.245.0.1` is an internal Defender IP and should not be included in custom indicators by customers to avoid any functionality issues.
3939
> Also, alerts for custom indicators are currently not supported for Defender for Endpoint on Android.

defender-endpoint/api/exposed-apis-create-app-webapp.md

Lines changed: 2 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -50,6 +50,8 @@ Having the [Microsoft Entra role](/entra/identity/role-based-access-control/mana
5050

5151
## Step 2: Add a secret to your app
5252

53+
This section describes authenticating your app using an app secret. To authenticate your app using a certificate, see [Create a self-signed public certificate to authenticate your application](/entra/identity-platform/howto-create-self-signed-certificate).
54+
5355
1. From the application page, select *Certificates & secrets* > *New client secret*.
5456

5557
2. In the *Add a client secret* pane, add a description and expiration date.
@@ -163,11 +165,3 @@ var request = new HttpRequestMessage(HttpMethod.Get, "https://api.securitycenter
163165
request.Headers.Authorization = new AuthenticationHeaderValue("Bearer", token);
164166
var response = httpClient.SendAsync(request).GetAwaiter().GetResult();
165167
```
166-
167-
## See also
168-
169-
* [Get access with user context](exposed-apis-create-app-nativeapp.md)
170-
171-
* [Supported Microsoft Defender for Endpoint APIs](exposed-apis-list.md)
172-
173-
* [Access Microsoft Defender for Endpoint on behalf of a user](exposed-apis-create-app-nativeapp.md)

defender-endpoint/defender-endpoint-trial-user-guide.md

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -39,19 +39,19 @@ This playbook is a simple guide to help you make the most of your free trial. Us
3939
<center><h2>Microsoft Defender for Endpoint</center></h2>
4040
<table>
4141
<tr>
42-
<td><a href="microsoft-defender-endpoint.md#tvm"><center><img src="media/logo-mdvm.png" alt="Vulnerability Management"> <br><b> Core Defender Vulnerability Management</b></center></a></td>
43-
<td><a href="microsoft-defender-endpoint.md#asr"><center><img src="media/asr-icon.png" alt="Attack surface reduction"><br><b>Attack surface reduction</b></center></a></td>
44-
<td><center><a href="microsoft-defender-endpoint.md#ngp"><img src="media/ngp-icon.png" alt="Next-generation protection"><br> <b>Next-generation protection</b></a></center></td>
45-
<td><center><a href="microsoft-defender-endpoint.md#edr"><img src="media/edr-icon.png" alt="Endpoint detection and response"><br> <b>Endpoint detection and response</b></a></center></td>
46-
<td><center><a href="microsoft-defender-endpoint.md#ai"><img src="media/air-icon.png" alt="Automated investigation and remediation"><br> <b>Automated investigation and remediation</b></a></center></td>
47-
<td><center><a href="microsoft-defender-endpoint.md#mte"><img src="media/mte-icon.png" alt="Microsoft Threat Experts"><br> <b>Microsoft Threat Experts</b></a></center></td>
42+
<td><a href="/defender-vulnerability-management/defender-vulnerability-management"><center><img src="media/logo-mdvm.png" alt="Vulnerability Management"> <br><b> Core Defender Vulnerability Management</b></center></a></td>
43+
<td><a href="overview-attack-surface-reduction.md"><center><img src="media/asr-icon.png" alt="Attack surface reduction"><br><b>Attack surface reduction</b></center></a></td>
44+
<td><center><a href="next-generation-protection.md"><img src="media/ngp-icon.png" alt="Next-generation protection"><br> <b>Next-generation protection</b></a></center></td>
45+
<td><center><a href="overview-endpoint-detection-response.md"><img src="media/edr-icon.png" alt="Endpoint detection and response"><br> <b>Endpoint detection and response</b></a></center></td>
46+
<td><center><a href="automated-investigations.md"><img src="media/air-icon.png" alt="Automated investigation and remediation"><br> <b>Automated investigation and remediation</b></a></center></td>
47+
<td><center><a href="endpoint-attack-notifications.md"><img src="media/mte-icon.png" alt="Microsoft Threat Experts"><br> <b>Microsoft Threat Experts</b></a></center></td>
4848
</tr>
4949
<tr>
5050
<td colspan="7">
51-
<a href="microsoft-defender-endpoint.md#apis"><center><b>Centralized configuration and administration, APIs</a></b></center></td>
51+
<a href="api/management-apis.md"><center><b>Centralized configuration and administration, APIs</a></b></center></td>
5252
</tr>
5353
<tr>
54-
<td colspan="7"><a href="microsoft-defender-endpoint.md#mtp"><center><b>Microsoft Defender portal</a></center></b></td>
54+
<td colspan="7"><a href="/unified-secops/overview-defender-portal"><center><b>Microsoft Defender portal</a></center></b></td>
5555
</tr>
5656
</table>
5757
<br>

defender-endpoint/ios-whatsnew.md

Lines changed: 16 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ ms.author: lwainstein
66
author: limwainstein
77
ms.reviewer: sunasing; denishdonga
88
ms.localizationpriority: medium
9-
ms.date: 09/05/2025
9+
ms.date: 11/06/2025
1010
manager: bagol
1111
audience: ITPro
1212
ms.collection:
@@ -29,11 +29,25 @@ Want to experience Microsoft Defender for Endpoint? [Sign up for a free trial.](
2929

3030
## Releases for Defender for Endpoint on iOS
3131

32+
#### November 2025
33+
34+
| Build| 1.1.70290103|
35+
| -------- | -------- |
36+
| Release Date |November 6, 2025|
37+
38+
**What's New**
39+
40+
- An improved user feedback experience: See [Key Changes - November 2025](./ios-new-ux.md#key-changes---november-2025) for details.
41+
42+
- Added Landscape mode UI support for the Defender app.
43+
44+
- Additional telemetry features to improve app performance monitoring and detect specific scenarios, such as entering landscape mode or invalid authentication attempts.
45+
3246
#### October 2025
3347

3448
| Build| 1.1.70230101|
3549
| -------- | -------- |
36-
| Release Date |October 28, 2025|
50+
| Release Date |October 26, 2025|
3751

3852
**What's New**
3953

120 KB
Loading

0 commit comments

Comments
 (0)