Forum Discussion
Block USB Drive by Serial Number
Hello robarismail,
Please, check these articles:
Block USB in Microsoft Defender for Endpoint and Intune - Microsoft Community Hub
We did it for several customers and it worked well.
"I do not want to block all USB drives. Auto USB actions already blocked." --- you can block only specific USB drives based on their HardwareID, SerialNumberId, etc.
- robarismailNov 02, 2022Copper Contributor
Hello mikhailf,
Thank you for the reply. In the article Block USB in Microsoft Defender for Endpoint and Intune - Microsoft Community Hub they are creating 2 "group" XML files and 1 "policy" XML file."
* The first group is the Group XML that will specify the type of mass storage.
* The second group it to modify the XML file for your approved USB list. - Why is this needed, I want to approve all besides the ones I want to block with serial number?
* The third file which is the policy file
Br,
Robar
- mikhailfNov 02, 2022Iron ContributorThis is only an example.
Based on the second link you can build another policy: Specify the type of mass storage, create a group with blocked USBs, and for that group configure the access (Block in your case).