You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: unified-secops-platform/mto-cross-cloud.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -122,7 +122,7 @@ To remove tenants from the list, select the tenant, then select **Remove tenants
122
122
After successfully adding tenants from other clouds, you can view these tenants in other multitenant pages like the incidents and device inventory pages.
123
123
124
124
> [!NOTE]
125
-
> When a cross-cloud tenant is added to a tenant group and subsequently removed from cross-cloud visibility, the tenant's name is removed from the tenant list and won’t be available for content management. This is a recognized limitation of cross-cloud visibility and is currently under review. See [Troubleshooting issues](mto-troubleshoot.md#content-assignment-failure-in-cross-cloud-tenant-management) for more information.
125
+
> When a cross-cloud tenant is added to a distribution profile and subsequently removed from cross-cloud visibility, the tenant's name is removed from the tenant list and won’t be available for content management. This is a recognized limitation of cross-cloud visibility and is currently under review. See [Troubleshooting issues](mto-troubleshoot.md#content-assignment-failure-in-cross-cloud-tenant-management) for more information.
Copy file name to clipboardExpand all lines: unified-secops-platform/mto-tenantgroups.md
+31-31Lines changed: 31 additions & 31 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,6 +1,6 @@
1
1
---
2
-
title: Content distribution using tenant groups in multitenant management
3
-
description: Overview of content distribution through tenant groups in multitenant management in Microsoft Defender XDR.
2
+
title: Content distribution using distribution profiles in multitenant management
3
+
description: Overview of content distribution through distribution profiles in multitenant management in Microsoft Defender XDR.
4
4
ms.service: unified-secops-platform
5
5
ms.author: diannegali
6
6
author: diannegali
@@ -19,12 +19,12 @@ appliesto:
19
19
20
20
# Content distribution in multitenant management
21
21
22
-
Content distribution helps you manage content at scale, across tenants in multitenant management in Microsoft Defender XDR. In content distribution, you can create tenant groups to copy existing content, like custom detection rules, from the source tenant to the target tenants you assign during tenant group creation. The content then runs on the target tenant's devices or device groups that you set in the tenant group scope.
22
+
Content distribution helps you manage content at scale, across tenants in multitenant management in Microsoft Defender XDR. In content distribution, you can create distribution profiles to copy existing content, like custom detection rules, from the source tenant to the target tenants you assign during distribution profile creation. The content then runs on the target tenant's devices or device groups that you set in the distribution profile scope.
23
23
24
24
Distributing content in this manner, across tenants, enables you to organize tenants and content based on categories like business groups or location.
25
25
26
26
> [!NOTE]
27
-
> Multitenant management currently supports adding custom detection rules to a tenant group. Additional content types will be added in the future.
27
+
> Multitenant management currently supports adding custom detection rules to a distribution profile. Additional content types will be added in the future.
28
28
29
29
## Requirements
30
30
@@ -36,61 +36,61 @@ The following table lists the requirements for content distribution in multitena
36
36
|Permissions |Users must be assigned the correct roles and permission at the individual tenant level to view and manage the associated data in multitenant management. <br/> Access to content distribution is granted through the Security settings (manage) or Security Data Basic (read) permission in [Microsoft 365 Defender Unified role-based access control (URBAC)](/defender-xdr/manage-rbac). Both of these roles are assigned to the Security Administrator and Security Reader Microsoft Entra built-in roles by default.|
37
37
|Delegate access |Delegated access via [Azure B2B](/entra/external-id/add-users-administrator) or [GDAP (CSP Parters only)](/microsoft-365/lighthouse/m365-lighthouse-setup-gdap) must be obtained for at least one other tenant.|
38
38
39
-
## Create tenant groups
39
+
## Create distribution profiles
40
40
41
-
To create a new tenant group:
41
+
To create a new distribution profile:
42
42
43
-
1. Go to the [Tenant groups page](https://mto.security.microsoft.com/tenantgroups) in multitenant management in Microsoft Defender XDR.
44
-
2. Select **Create tenant group**. In the **Tenants** page, select **Add tenant** to see a list of available tenants that you can add to your tenant group. Choose the tenants you want to add to the tenant group, then select **Add**.
43
+
1. Go to the [distribution profiles page](https://mto.security.microsoft.com/tenantgroups) in multitenant management in Microsoft Defender XDR.
44
+
2. Select **Create distribution profile**. In the **Tenants** page, select **Add tenant** to see a list of available tenants that you can add to your distribution profile. Choose the tenants you want to add to the distribution profile, then select **Add**.
45
45
46
-
:::image type="content" source="media/mto-tenantgroups/mto-add-tenants-small.png" alt-text="Screenshot of the tenant group creation wizard." lightbox="media/mto-tenantgroups/mto-add-tenants.png":::
46
+
:::image type="content" source="media/mto-tenantgroups/mto-add-tenants-small.png" alt-text="Screenshot of the distribution profile creation wizard." lightbox="media/mto-tenantgroups/mto-add-tenants.png":::
47
47
48
-
3. In the **Content selection** page, select the content to be distirbuted across all tenants in your tenant group, then select **Next**.
48
+
3. In the **Content selection** page, select the content to be distirbuted across all tenants in your distribution profile, then select **Next**.
49
49
50
50
:::image type="content" source="media/mto-tenantgroups/mto-add-content-small.png" alt-text="Screenshot of content selection wizard." lightbox="media/mto-tenantgroups/mto-add-content.png":::
51
51
52
52
> [!NOTE]
53
-
> The content type selection is currently limited to adding custom detection rules to a tenant group.
53
+
> The content type selection is currently limited to adding custom detection rules to a distribution profile.
54
54
55
-
4. In the **Custom detection rules** page, select **Add content** to add specific detection rules to your tenant group.
55
+
4. In the **Custom detection rules** page, select **Add content** to add specific detection rules to your distribution profile.
5. In the **Select detection rules** page, filter the source tenant of the content, then select **Apply**. Choose the content you want to add to your tenant group from the list.
59
+
5. In the **Select detection rules** page, filter the source tenant of the content, then select **Apply**. Choose the content you want to add to your distribution profile from the list.
60
60
61
61
:::image type="content" source="media/mto-tenantgroups/mto-select-content-small.png" alt-text="Screenshot of the detection rules selection pane." lightbox="media/mto-tenantgroups/mto-select-content.png":::
62
62
63
63
6. In the **Device groups** page, select the devices or specific device groups that need to be in your tenant's scope.
64
64
65
65
:::image type="content" source="media/mto-tenantgroups/mto-select-device-small.png" alt-text="Screenshot of the device selection pane." lightbox="media/mto-tenantgroups/mto-select-device.png":::
66
66
67
-
7. Add a tenant group name and description about your tenant group in the Details page.
68
-
8. Review the details of the tenant group you created in the **Summary** page. Leave the **Sync all authorized tenants** option checked if content needs to be synchronized now or uncheck it if the sync is planned for a later time.
67
+
7. Add a distribution profile name and description about your distribution profile in the Details page.
68
+
8. Review the details of the distribution profile you created in the **Summary** page. Leave the **Sync all authorized tenants** option checked if content needs to be synchronized now or uncheck it if the sync is planned for a later time.
69
69
70
-
:::image type="content" source="media/mto-tenantgroups/mto-summary-tenantgroups-small.png" alt-text="Screenshot of summary of tenant groups with the checkbox highlighted." lightbox="media/mto-tenantgroups/mto-summary-tenantgroups.png":::
70
+
:::image type="content" source="media/mto-tenantgroups/mto-summary-tenantgroups-small.png" alt-text="Screenshot of summary of distribution profiles with the checkbox highlighted." lightbox="media/mto-tenantgroups/mto-summary-tenantgroups.png":::
71
71
72
-
9. Select **Submit** to finish your tenant group creation.
72
+
9. Select **Submit** to finish your distribution profile creation.
73
73
74
74
> [!TIP]
75
75
> If you choose to **Sync all authorized tenants**, all the tenants and scope within the tenants you have permission automatically syncs.
76
76
77
-
Your newly created tenant group appears in the Tenant groups page after creation. Select the tenant group from the list to add or remove content, add, edit, or remove tenants, or sync the tenant group.
77
+
Your newly created distribution profile appears in the distribution profiles page after creation. Select the distribution profile from the list to add or remove content, add, edit, or remove tenants, or sync the distribution profile.
78
78
79
-
:::image type="content" source="media/mto-tenantgroups/mto-group-sample-small.png" alt-text="Screenshot of a tenant group page and the actions available within the page." lightbox="media/mto-tenantgroups/mto-group-sample.png":::
79
+
:::image type="content" source="media/mto-tenantgroups/mto-group-sample-small.png" alt-text="Screenshot of a distribution profile page and the actions available within the page." lightbox="media/mto-tenantgroups/mto-group-sample.png":::
80
80
81
81
Check the sync results under the **Last sync result** column. If the result is *partially successful* or *failed*, select the result to investigate the cause. When selecting the result, a side pane containing the errors, recommendations, and impacted assets appears. Here's an example.
82
82
83
83
:::image type="content" source="media/mto-tenantgroups/mto-sync-results-small.png" alt-text="Screenshot of sync results side pane." lightbox="media/mto-tenantgroups/mto-sync-results.png":::
84
84
85
85
> [!NOTE]
86
-
> The maximum number of published items per publish operation is 9,500. Published items are calculated as the number of tenants multiplied by the number of templates. For example, if you publish 10 tenant groups with 10 target tenants and 95 content templates, then the published items equals to 9,500.
86
+
> The maximum number of published items per publish operation is 9,500. Published items are calculated as the number of tenants multiplied by the number of templates. For example, if you publish 10 distribution profiles with 10 target tenants and 95 content templates, then the published items equals to 9,500.
87
87
88
-
## Syncing content among tenant groups
88
+
## Syncing content among distribution profiles
89
89
90
-
To sync content across tenant groups for the tenants you have permission for:
90
+
To sync content across distribution profiles for the tenants you have permission for:
91
91
92
-
1. Go to the [Tenant groups page](https://mto.security.microsoft.com/tenantgroups).
93
-
2. Select the checkbox next to the tenant group you want to sync, then select **Sync tenant group**.
92
+
1. Go to the [distribution profiles page](https://mto.security.microsoft.com/tenantgroups).
93
+
2. Select the checkbox next to the distribution profile you want to sync, then select **Sync distribution profile**.
94
94
3. Select **Sync** on the prompt that appears.
95
95
4. Once the sync is completed, you see one of the following statuses:
96
96
- Success
@@ -101,16 +101,16 @@ To sync content across tenant groups for the tenants you have permission for:
101
101
102
102
Sync results show the number of synced tenants and content. Synced tenants indicate how many tenants had custom detection rules applied successfully. For example, if all rules are applied in 3 out of 3 tenants, the count is 3; if only 2 tenants succeed, the count is 2. Synced content represents the total custom detection rules synced across all target tenants.
103
103
104
-
## Edit tenant groups
104
+
## Edit distribution profiles
105
105
106
-
1. Go to the [Tenant groups page](https://mto.security.microsoft.com/tenantgroups).
107
-
2. Select the checkboxes next to the tenant group you want to edit, then select **Edit tenant group**.
108
-
3. Edit the tenant group name and description, then select **Save**.
106
+
1. Go to the [distribution profiles page](https://mto.security.microsoft.com/tenantgroups).
107
+
2. Select the checkboxes next to the distribution profile you want to edit, then select **Edit distribution profile**.
108
+
3. Edit the distribution profile name and description, then select **Save**.
109
109
110
-
## Remove tenant groups
110
+
## Remove distribution profiles
111
111
112
-
1. Go to the [Tenant groups page](https://mto.security.microsoft.com/tenantgroups).
113
-
2. Select the checkboxes next to the tenant group you want to remove, then select **Remove tenant group**.
112
+
1. Go to the [**Distribution profiles** page](https://mto.security.microsoft.com/tenantgroups).
113
+
2. Select the checkboxes next to the distribution profile you want to remove, then select **Remove distribution profile**.
Copy file name to clipboardExpand all lines: unified-secops-platform/mto-troubleshoot.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -51,11 +51,11 @@ Here’s an example of the policy setting in the Microsoft Entra admin center.
51
51
52
52
## Content assignment failure in cross-cloud tenant management
53
53
54
-
You see the following error when assigning content to tenant groups:
54
+
You see the following error when assigning content to distribution profiles:
55
55
56
56
:::image type="content" source="media/mto-troubleshoot/tenant-perms-error-small.png" alt-text="Screenshot of permissions error when assigning content to tenants" lightbox="media/mto-troubleshoot/tenant-perms-error.png":::
57
57
58
-
When a cross-cloud tenant is added to a tenant group and subsequently removed from cross-cloud visibility, the tenant's name is removed from the tenant list and won't be available for content management, which causes the error. This is a recognized limitation of cross-cloud tenant management and is currently under review.
58
+
When a cross-cloud tenant is added to a distribution profile and subsequently removed from cross-cloud visibility, the tenant's name is removed from the tenant list and won't be available for content management, which causes the error. This is a recognized limitation of cross-cloud tenant management and is currently under review.
0 commit comments