You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/mac-install-manually.md
-29Lines changed: 0 additions & 29 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -55,12 +55,10 @@ Download the installation and onboarding packages from Microsoft Defender portal
55
55
3. In Section 2 of the page, select **Download installation package**. Save it as wdav.pkg to a local directory.
56
56
57
57
4. In Section 2 of the page, select **Download onboarding package**. Save it as WindowsDefenderATPOnboardingPackage.zip to the same directory.
58
-
:::image type="content" source="media/onboarding-package-step4.png" alt-text="Screenshot that shows the options to download the installation and onboarding packages.":::
59
58
60
59
5. From a command prompt, verify that you have the two files.
61
60
- Type *cd Downloads* and press **Enter**.
62
61
- Type *ls* and press **Enter**.
63
-
:::image type="content" source="media/Terminal-image-step5.png" alt-text="Screenshot that displays the two download files.":::
64
62
65
63
6. Copy the *wdav.pkg* and *MicrosoftDefenderATPOnboardingMacOs.sh* to the device where you want to deploy the Microsoft Defender for Endpoint on macOS.
66
64
@@ -79,55 +77,37 @@ To complete this process, you must have admin privileges on the device.
:::image type="content" source="media/monterey-install-1.png" alt-text="Screenshot that shows the installation process for the application.":::
84
80
85
81
2. Select **Continue**.
86
82
87
83
3. Read through the **Software License Agreement** and select **Continue** to agree with the terms.
88
84
89
-
:::image type="content" source="media/software-license-agreement.png" alt-text="Screenshot that shows the Software License Agreement.":::
90
-
91
85
4. Read through the *End-User License Agreement (EULA)* and select **Agree**.
92
86
93
-
:::image type="content" source="media/agree-license.png" alt-text="Screenshot that shows the acceptance of the agreement.":::
94
-
95
87
5. From **Destination Select**, select the disk where you want to install the Microsoft Defender Software, for example, *Macintosh HD* and select **Continue**.
96
88
97
-
:::image type="content" source="media/destination-select.png" alt-text="Screenshot that shows the selection of destination for installation.":::
98
-
99
89
> [!NOTE]
100
90
> The amount of disk space required for installation is around 777 MB.
101
91
102
92
6. To change the installation destination, select **Change Install Location...**.
103
93
104
-
:::image type="content" source="media/installation-type.png" alt-text="Screenshot that shows the final installation step.":::
105
-
106
94
7. Select **Install**.
107
95
108
96
8. Enter the password, when prompted.
109
97
110
-
:::image type="content" source="media/password-2g.png" alt-text="Screenshot that shows the password dialog box.":::
111
-
112
98
9. Select **Install Software**.
113
99
114
100
10. At the end of the installation process, for macOS Ventura (13.0) or latest version, you're prompted to approve the system extensions used by the product. Select **Open Security Preferences**.
115
101
116
-
:::image type="content" source="media/monterey-install-2.png" alt-text="Screenshot that shows the system extension approval":::
117
-
118
102
11. To enable system extension, select **Details**.
119
103
120
-
:::image type="content" source="media/system-extention-image.png" alt-text="Screenshot that shows the system extension.":::
121
104
122
105
12. From the **Security & Privacy** window, select the checkboxes next to **Microsoft Defender** and select **OK**.
123
106
124
-
:::image type="content" source="media/security-privacy-window-updated.png" alt-text="Screenshot that shows the security and privacy window.":::
125
-
126
107
13. Repeat steps 11 and 12 for all system extensions distributed with Microsoft Defender for Endpoint on macOS.
127
108
128
109
14. As part of the Endpoint Detection and Response capabilities, Microsoft Defender for Endpoint on macOS inspects socket traffic and reports this information to the Microsoft Defender portal. When prompted to grant Microsoft Defender for Endpoint permissions to filter network traffic, select **Allow**.
129
110
130
-
:::image type="content" source="media/monterey-install-4.png" alt-text="Screenshot that shows the system extension security preferences2":::
131
111
132
112
To troubleshoot System Extension issues, refer [Troubleshoot System Extension](mac-support-sys-ext.md).
133
113
@@ -144,12 +124,8 @@ To grant full disk access:
144
124
145
125
2. Grant **Full Disk Access** permission to **Microsoft Defender** and **Microsoft Defenders Endpoint Security Extension**.
146
126
147
-
:::image type="content" source="media/full-disk-access-security-privacy.png" alt-text="The screenshot shows the full disk access's security and privacy.":::
148
-
149
127
3. Select **General** \> **Restart** for the new system extensions to take effect.
150
128
151
-
:::image type="content" source="media/restart-fulldisk.png" alt-text="Screenshot that allows you to restart the system for new system extensions to be enabled.":::
152
-
153
129
4. Enable *Potentially Unwanted Application* (PUA) in block mode.
154
130
155
131
To enable PUA, refer [configure PUA protection](mac-pua.md).
@@ -173,11 +149,9 @@ To grant full disk access:
173
149
Starting with macOS 13, a user must explicitly allow an application to run in background.
174
150
macOS will pop a prompt up, telling the user that Microsoft Defender can run in background.
175
151
176
-
:::image type="content" source="media/background-items-notification.png" alt-text="Screenshot that shows background items notification":::
177
152
178
153
You can view applications permitted to run in background in System Settings => sign in Items => Allow in the Background at any time:
179
154
180
-
:::image type="content" source="media/background-items.png" alt-text="Screenshot that shows background items":::
181
155
182
156
Make sure all Microsoft Defender and Microsoft Corporation items are enabled. If they're disabled, then macOS won't start Microsoft Defender after a machine restart.
183
157
@@ -187,12 +161,9 @@ Starting with macOS 14, a user must explicitly allow an application to access Bl
187
161
macOS will pop a prompt up, telling the user that Microsoft Defender can access Bluetooth (applies only if you use Bluetooth based policies for Device Control).
188
162
Select Allow to grant Microsoft Defender to access Bluetooth.
189
163
190
-
:::image type="content" source="media/macos-defender-bluetooth.png" alt-text="Screenshot that shows Bluetooth access request":::
191
164
192
165
You can confirm that permissions are granted in System Settings => Privacy Settings => Bluetooth.
193
166
194
-
:::image type="content" source="media/macos-defender-bluetooth-review.png" alt-text="Screenshot that shows Review Bluetooth access":::
195
-
196
167
## Onboarding Package
197
168
198
169
Once you install the MDE on macOS client, you must now onboard the package, which registers to your Microsoft Defender for Endpoint tenant and licenses it.
0 commit comments