Hi jayreg, thanks for reaching out and sharing your feedback. Device discovery is specifically designed to not discover devices that are on public networks (e.g.: local coffee shop), or even private ones like your home network. If you’re experience is different, we’d love to investigate this with you. I’ll send you a message via Tech Community requesting some info so we can take a look, log any bugs we find, etc.
Please note that while we discover and add unprotected devices to device inventory these devices are not onboarded which means they have become protected by MDE. Protected would mean MDE’s EPP and EDR capabilities have been activated on the device and there is no product functionality to make this happen automatically for a completely unmanaged device. If it appears that devices have been automatically onboarded the devices must have been managed by another Microsoft product. There are some automation cases for scenarios like that. For instance, if the device was already managed and protected by Microsoft Defender for Cloud it can be automatically onboarded to MDE. More info on the onboarding process and the cases where we have some automation can be found here https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fmicrosoft-365%2Fsecurity%2Fdefender-endpoint%2Fonboarding&data=04%7C01%7Cchallum%40microsoft.com%7Cf9f26a87d31c4b15ba9208d9d6c6d53d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637776971764894344%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=tu3gGoHXX3RP47x4G05gafB%2Fpb1d7hNeGFtSi84ztbk%3D&reserved=0.
Thank again for the feedback!
Chris Hallum
Senior Product Marketing Manager
Microsoft Corporation