Skip to content

Commit bb30d78

Browse files
authored
Merge pull request #3229 from MicrosoftDocs/alert-policies-xdr
Alert policies in Defender XDR - Dianne and Chris to review
2 parents 11f609d + 3bddd2d commit bb30d78

12 files changed

+355
-3
lines changed

defender-xdr/TOC.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -460,6 +460,8 @@
460460
items:
461461
- name: Microsoft Defender XDR FAQs
462462
href: m365d-enable-faq.md
463+
- name: Alert policies
464+
href: alert-policies.md
463465
- name: Audit activities and events
464466
href: microsoft-xdr-auditing.md
465467
- name: Configure email notifications

defender-xdr/alert-policies.md

Lines changed: 347 additions & 0 deletions
Large diffs are not rendered by default.

defender-xdr/investigate-alerts.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ ms.topic: conceptual
1818
search.appverid:
1919
- MOE150
2020
- met150
21-
ms.date: 1/27/2025
21+
ms.date: 3/25/2025
2222
appliesto:
2323
- Microsoft Defender XDR
2424
---
@@ -58,6 +58,7 @@ You can filter alerts according to these criteria:
5858
- Product name
5959
- Entities (the impacted assets)
6060
- Automated investigation state
61+
- Workspace
6162
- Data stream (workload or location)
6263

6364
> [!NOTE]
96.8 KB
Loading
22.1 KB
Loading
43.6 KB
Loading
34.3 KB
Loading
75 KB
Loading
16.5 KB
Loading
71.5 KB
Loading

0 commit comments

Comments
 (0)