Skip to content

Commit fb37e87

Browse files
authored
Merge pull request #3448 from MicrosoftDocs/main
Publish main to live, 04/09/25, 10:30 AM PDT
2 parents dacf063 + d266a30 commit fb37e87

File tree

2 files changed

+13
-22
lines changed

2 files changed

+13
-22
lines changed

defender-endpoint/use-group-policy-microsoft-defender-antivirus.md

Lines changed: 5 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ ms.localizationpriority: medium
66
author: emmwalshh
77
ms.author: ewalsh
88
ms.custom: nextgen
9-
ms.date: 03/12/2025
10-
ms.reviewer: ksarens, jtoole, pahuijbr
9+
ms.date: 04/10/2025
10+
ms.reviewer: ksarens, jtoole, pahuijbr, yongrhee
1111
manager: deniseb
1212
ms.subservice: ngp
1313
audience: ITPro
@@ -32,6 +32,7 @@ search.appverid: met150
3232

3333
**Platforms**
3434
- Windows
35+
- Windows Server
3536

3637
We recommend using [Microsoft Intune](/mem/intune/fundamentals/what-is-intune) to manage Microsoft Defender Antivirus settings for your organization. However, you can use [Group Policy](/windows/win32/srvnodes/group-policy) to configure and manage some settings for Microsoft Defender Antivirus.
3738

@@ -59,12 +60,11 @@ In general, you can use the following procedure to configure or change some sett
5960

6061
## Group Policy settings and resources
6162

62-
The following table lists commonly used Group Policy settings that are available in Windows 10.
63+
The following table lists commonly used Group Policy settings that are available in Windows 10 and later, Windows Server 2016 and later, including if you are running Windows Server 2012 R2 with the unified Microsoft Defender for Endpoint client.
6364

6465
> [!TIP]
6566
> For the most current settings, get the latest ADMX files in your central store to access the correct policy options. See [How to create and manage the Central Store for Group Policy Administrative Templates in Windows](/troubleshoot/windows-client/group-policy/create-and-manage-central-store) and download the latest files.
6667
67-
6868
| Location | Setting | Article |
6969
|---|---|---|
7070
| Client interface| Enable headless UI mode | [Prevent users from seeing or interacting with the Microsoft Defender Antivirus user interface](prevent-end-user-interaction-microsoft-defender-antivirus.md) |
@@ -193,21 +193,7 @@ The following table lists commonly used Group Policy settings that are available
193193
> Instead of using "Run full scan on mapped network drives", if you have a Network-Attached Storage (NAS) or Storage Area Network (SAN), you can use Internet Content Adaption Protocol (ICAP) scanning with the Microsoft Defender Antivirus engine. For more information, see **[Tech Community Blog: MetaDefender ICAP with Windows Defender Antivirus: World-class security for hybrid environments](https://techcommunity.microsoft.com/t5/windows-it-pro-blog/metadefender-icap-with-windows-defender-antivirus-world-class/ba-p/800234)**.
194194
195195
> [!TIP]
196-
> **Performance tip** Due to a variety of factors (examples listed below) Microsoft Defender Antivirus, like other antivirus software, can cause performance issues on endpoint devices. In some cases, you might need to tune the performance of Microsoft Defender Antivirus to alleviate those performance issues. Microsoft's **Performance analyzer** is a PowerShell command-line tool that helps determine which files, file paths, processes, and file extensions might be causing performance issues; some examples are:
197-
>
198-
> - Top paths that impact scan time
199-
> - Top files that impact scan time
200-
> - Top processes that impact scan time
201-
> - Top file extensions that impact scan time
202-
> - Combinations – for example:
203-
> - top files per extension
204-
> - top paths per extension
205-
> - top processes per path
206-
> - top scans per file
207-
> - top scans per file per process
208-
>
209-
> You can use the information gathered using Performance analyzer to better assess performance issues and apply remediation actions.
210-
> See: [Performance analyzer for Microsoft Defender Antivirus](tune-performance-defender-antivirus.md).
196+
> **Performance tip** Due to a variety of factors, Microsoft Defender Antivirus, like other antivirus software, can cause performance issues on endpoint devices. In some cases, you might need to tune the performance of Microsoft Defender Antivirus to alleviate those performance issues. Microsoft's **Performance analyzer** is a PowerShell command-line tool that helps determine which files, file paths, processes, and file extensions might be causing performance issues. You can use the information gathered using Performance analyzer to better assess performance issues and apply remediation actions. For more information, see: [Performance analyzer for Microsoft Defender Antivirus](tune-performance-defender-antivirus.md).
211197
212198
## See also
213199

defender-vulnerability-management/fixed-reported-inaccuracies.md

Lines changed: 8 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -7,13 +7,14 @@ ms.pagetype: security
77
ms.author: deniseb
88
author: denisebmsft
99
manager: deniseb
10+
ms.reviewer: v-hbijlani; mobani
1011
audience: ITPro
1112
ms.collection:
1213
- m365-security
1314
- tier2
1415
ms.localizationpriority: medium
1516
ms.topic: troubleshooting
16-
ms.date: 03/21/2025
17+
ms.date: 04/10/2025
1718
---
1819

1920
# Vulnerability support in Microsoft Defender Vulnerability Management
@@ -29,8 +30,8 @@ This article provides information on inaccuracies that have been reported. You c
2930

3031
> [!NOTE]
3132
> The tables may also include updates based on vulnerability support queries from ICMs or in response to customer requests.
32-
33-
The following tables present the relevant vulnerability information organized by month:
33+
34+
The following tables present the relevant vulnerability information organized by month.
3435

3536
## March 2025
3637

@@ -44,6 +45,10 @@ The following tables present the relevant vulnerability information organized by
4445
| 90044 | Fixed inaccuracy in OpenVPN Connect vulnerability- CVE-2024-8474 | 11-Mar-25 |
4546
| - | Added Microsoft Defender Vulnerability Management support for Reload4j | 11-Mar-25 |
4647
| - | Fixed bad normalization in multiple products and vendors | 19-Mar-25 |
48+
| 84587 | Fixed vulnerability detection in Glance | 23-Mar-25 |
49+
| 94464 | Fixed inaccuracy in CVE-2025-22480 by removing SupportAssist CPEs | 24-Mar-25 |
50+
| - | Defender Vulnerability Management doesn't currently support CVE-2017-5703 | 25-Mar-25 |
51+
| 91175 | Fixed inaccuracy in CVE-2022-33633 by removing Skype CPEs | 25-Mar-25 |
4752

4853

4954
## February 2025

0 commit comments

Comments
 (0)