You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
## What are the different flavors for Microsoft Defender for IoT?
21
+
## What are the different management portals for Microsoft Defender for IoT?
22
22
23
-
You can work with these different flavors of Defender for IoT:
23
+
You can work with these different management portals:
24
24
25
-
|Flavor|Details|Next steps|
25
+
|Portal|Details|Next steps|
26
26
|---|---|---|
27
-
|Defender for IoT in the Defender portal (Preview)|Microsoft Defender customers can use this flavor for a unified IT/OT experience, extending Defender XDR protection to OT environments. [Learn about the main use cases](#what-are-the-main-defender-for-iot-use-cases).|[Get started](get-started.md) with Defender for IoT in the Defender portal.|
28
-
|Defender for IoT in the classic, Azure portal|All customers can use this flavor to identify OT devices, vulnerabilities, and threats in the Azure portal.|See the [Defender for IoT on Azure overview](/azure/defender-for-iot/organizations/overview).|
29
-
|Protection for enterprise IoT devices|Microsoft Defender customers can enable protection for enterprise IoT devices, like printers, smart TVs, and conferencing systems and purpose-built, proprietary devices.|[Get started](/azure/defender-for-iot/organizations/eiot-sensor) with enterprise IoT monitoring.|
27
+
|Defender for IoT in the Defender portal (Preview)|Microsoft Defender customers can use this portal for a unified IT/OT experience, extending Defender XDR protection to OT environments. [Learn about the main use cases](#what-are-the-main-defender-for-iot-use-cases).|[Get started](get-started.md) with Defender for IoT in the Defender portal.|
28
+
|Defender for IoT in the classic, Azure portal|All customers can use this portal to identify OT devices, vulnerabilities, and threats in the Azure portal.|See the [Defender for IoT on Azure overview](/azure/defender-for-iot/organizations/overview).|
29
+
30
+
Protection for enterprise IoT devices is available for Microsoft Defender customers. These customers can enable protection for enterprise IoT devices, like printers, smart TVs, and conferencing systems and purpose-built, proprietary devices. [Get started](/azure/defender-for-iot/organizations/eiot-sensor) with enterprise IoT monitoring.
Copy file name to clipboardExpand all lines: defender-xdr/microsoft-xdr-auditing.md
+6-3Lines changed: 6 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -11,7 +11,7 @@ ms.collection:
11
11
- m365-security
12
12
- tier3
13
13
ms.topic: overview
14
-
ms.date: 2/21/2024
14
+
ms.date: 07/23/2024
15
15
search.appverid: met150
16
16
---
17
17
@@ -40,7 +40,7 @@ For a complete list of Microsoft Defender XDR activities that are audited, see [
40
40
41
41
To access the audit log, you need to have the **View-Only Audit Logs** or **Audit Logs** role in Exchange Online. By default, those roles are assigned to the Compliance Management and Organization Management role groups.
42
42
43
-
>[!Note]
43
+
>[!NOTE]
44
44
> Global administrators in Office 365 and Microsoft 365 are automatically added as members of the Organization Management role group in Exchange Online.
45
45
46
46
## Turn on auditing in Microsoft Defender XDR
@@ -57,6 +57,9 @@ Microsoft Defender XDR uses the [Microsoft Purview auditing solution](/purview/a
57
57
:::image type="content" source="/defender/media/defender/unified-audit-log.png" alt-text="Screenshot of the unified audit log toggle in Microsoft Defender XDR advanced settings" lightbox="/defender/media/defender/unified-audit-log.png":::
58
58
4. Select **Save preferences**.
59
59
60
+
> [!IMPORTANT]
61
+
> Global Administrator is a highly privileged role that should be limited to scenarios when you can't use an existing role. Microsoft recommends that you use roles with the fewest permissions. Using lower permissioned accounts helps improve security for your organization.
62
+
60
63
## Using the audit search in Microsoft Defender XDR
61
64
62
65
1. To retrieve audit logs for Microsoft Defender XDR activities, navigate to the [Microsoft Defender XDR Audit page](https://security.microsoft.com/auditlogsearch) or go to the [Purview compliance portal](https://compliance.microsoft.com) and select **Audit**.
> If you're an existing customer working on the **classic Defender for IoT portal** (Azure portal), see the [Defender for IoT on Azure documentation](/azure/defender-for-iot/organizations/overview).
14
14
>
15
-
> Learn more about the [Defender for IoT flavors](/defender-for-iot/microsoft-defender-iot#what-are-the-different-flavors-for-microsoft-defender-for-iot).
15
+
> Learn more about the [Defender for IoT management portals](/defender-for-iot/microsoft-defender-iot#what-are-the-different-management-portals-for-microsoft-defender-for-iot).
16
16
>
17
17
> Some information in this article relates to a prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, expressed or implied, with respect to the information provided here.
0 commit comments