Forum Discussion
NY_Dina
Aug 25, 2022Copper Contributor
Microsoft Defender for Endpoint definition out of dated
Hi all,
Some devices that connected to internet can't get update AV signature, I trying to forced security intelligence from GPO but can't latest definition update. Please advise solution to resolve MDE can't automatically get definition update of (security intelligence, AV engine, AV platform update).
Thank you!
7 Replies
Sort By
- JonhedSteel ContributorCould you give some additional info on the updates sources for security intelligence you setup in the GPO, and also how you manage general OS updates? (Windows Update? SCCM?)
Security intelligence and AV engine will be updated from the source you choose in GPO,
and AV platform updates will be retrieved as an OS update from Windows Update etc.- NY_DinaCopper Contributor
Jonhed Thank you Jonh for advise, Please kindly below path of GPO has configured
GPO: Computer Configuration\Policies\Windows Components\Microsoft Defender for Antivirus\Security Intelligence UpdatesPlease kindly see details as attached pictures. And also advise if missing policy not configure.
Thank you,
- JonhedSteel ContributorOk, so you are running the default sources.
Can't remember what those are, so could you run "Get-MpPreference" in powershell and check the value of "SignatureFallbackOrder" is?
Also, what happens if you try to run a manual update from the security center on one of the affected pcs? Do you get some sort of error code?