Disappointed overall, I mean this Defender ATP in general seemed so enterprise grade but when you really start trailing it the limited support for various OS's, etc., is just too much, outside of Windows 10 almost everything has an exception. Additionally it doesn't seem Device Threat Status even works in Intune without having your device both MDM Managed and Azure AD Domain Joined, MDM Managed with Azure AD Registered and the status never changes from deactivated. This seems strange as I would think many would want to use this as part of managing security on BYOD devices as well, it almost forces you to get a package from a 3rd party to address the all up concern, most of us don't need another console, I wanted to love this solution but it feels a year or two away from being ready. I will note that the device threat level detection works fine in the defender security center but losing the ability to control access via MCAS is unfortunate. Are there plans to enable this without AZ AD Join required? Any updates on the tamper protection, I was wondering why the setting was disabled with no way to manage it in Intune or locally.