Skip to content

Commit d801828

Browse files
authored
Update respond-machine-alerts.md
Adding a line in the "important points to keep in mind" to clarify that device isolation works when Defender is running in passive mode.
1 parent 5cb8f82 commit d801828

File tree

1 file changed

+1
-0
lines changed

1 file changed

+1
-0
lines changed

defender-endpoint/respond-machine-alerts.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -212,6 +212,7 @@ Depending on the severity of the attack and the sensitivity of the device, you m
212212

213213
- Isolating devices from the network is supported for macOS for client version 101.98.84 and above. You can also use live response to run the action. For more information on live response, see [Investigate entities on devices using live response](live-response.md)
214214
- Full isolation is available for devices running Windows 11, Windows 10, version 1703 or later, Windows Server 2025, Windows Server 2022, Windows Server 2019, Windows Server 2016 and Windows Server 2012 R2.
215+
- Isolating devices from the network is supported when Defender is running in passive mode on all supported Windows operating systems, macOS and Linux supported versions.
215216
- You can use the device isolation capability on all supported Microsoft Defender for Endpoint on Linux listed in [System requirements](mde-linux-prerequisites.md). Ensure that the following prerequisites are enabled:
216217
- `iptables`
217218
- `ip6tables`

0 commit comments

Comments
 (0)