You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/use-group-policy-microsoft-defender-antivirus.md
+5-19Lines changed: 5 additions & 19 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -6,8 +6,8 @@ ms.localizationpriority: medium
6
6
author: emmwalshh
7
7
ms.author: ewalsh
8
8
ms.custom: nextgen
9
-
ms.date: 03/12/2025
10
-
ms.reviewer: ksarens, jtoole, pahuijbr
9
+
ms.date: 04/10/2025
10
+
ms.reviewer: ksarens, jtoole, pahuijbr, yongrhee
11
11
manager: deniseb
12
12
ms.subservice: ngp
13
13
audience: ITPro
@@ -32,6 +32,7 @@ search.appverid: met150
32
32
33
33
**Platforms**
34
34
- Windows
35
+
- Windows Server
35
36
36
37
We recommend using [Microsoft Intune](/mem/intune/fundamentals/what-is-intune) to manage Microsoft Defender Antivirus settings for your organization. However, you can use [Group Policy](/windows/win32/srvnodes/group-policy) to configure and manage some settings for Microsoft Defender Antivirus.
37
38
@@ -59,12 +60,11 @@ In general, you can use the following procedure to configure or change some sett
59
60
60
61
## Group Policy settings and resources
61
62
62
-
The following table lists commonly used Group Policy settings that are available in Windows 10.
63
+
The following table lists commonly used Group Policy settings that are available in Windows 10 and later, Windows Server 2016 and later, including if you are running Windows Server 2012 R2 with the unified Microsoft Defender for Endpoint client.
63
64
64
65
> [!TIP]
65
66
> For the most current settings, get the latest ADMX files in your central store to access the correct policy options. See [How to create and manage the Central Store for Group Policy Administrative Templates in Windows](/troubleshoot/windows-client/group-policy/create-and-manage-central-store) and download the latest files.
66
67
67
-
68
68
| Location | Setting | Article |
69
69
|---|---|---|
70
70
| Client interface| Enable headless UI mode |[Prevent users from seeing or interacting with the Microsoft Defender Antivirus user interface](prevent-end-user-interaction-microsoft-defender-antivirus.md)|
@@ -193,21 +193,7 @@ The following table lists commonly used Group Policy settings that are available
193
193
> Instead of using "Run full scan on mapped network drives", if you have a Network-Attached Storage (NAS) or Storage Area Network (SAN), you can use Internet Content Adaption Protocol (ICAP) scanning with the Microsoft Defender Antivirus engine. For more information, see **[Tech Community Blog: MetaDefender ICAP with Windows Defender Antivirus: World-class security for hybrid environments](https://techcommunity.microsoft.com/t5/windows-it-pro-blog/metadefender-icap-with-windows-defender-antivirus-world-class/ba-p/800234)**.
194
194
195
195
> [!TIP]
196
-
> **Performance tip** Due to a variety of factors (examples listed below) Microsoft Defender Antivirus, like other antivirus software, can cause performance issues on endpoint devices. In some cases, you might need to tune the performance of Microsoft Defender Antivirus to alleviate those performance issues. Microsoft's **Performance analyzer** is a PowerShell command-line tool that helps determine which files, file paths, processes, and file extensions might be causing performance issues; some examples are:
197
-
>
198
-
> - Top paths that impact scan time
199
-
> - Top files that impact scan time
200
-
> - Top processes that impact scan time
201
-
> - Top file extensions that impact scan time
202
-
> - Combinations – for example:
203
-
> - top files per extension
204
-
> - top paths per extension
205
-
> - top processes per path
206
-
> - top scans per file
207
-
> - top scans per file per process
208
-
>
209
-
> You can use the information gathered using Performance analyzer to better assess performance issues and apply remediation actions.
210
-
> See: [Performance analyzer for Microsoft Defender Antivirus](tune-performance-defender-antivirus.md).
196
+
> **Performance tip** Due to a variety of factors, Microsoft Defender Antivirus, like other antivirus software, can cause performance issues on endpoint devices. In some cases, you might need to tune the performance of Microsoft Defender Antivirus to alleviate those performance issues. Microsoft's **Performance analyzer** is a PowerShell command-line tool that helps determine which files, file paths, processes, and file extensions might be causing performance issues. You can use the information gathered using Performance analyzer to better assess performance issues and apply remediation actions. For more information, see: [Performance analyzer for Microsoft Defender Antivirus](tune-performance-defender-antivirus.md).
0 commit comments