Forum Discussion
Konst1
Nov 01, 2024Copper Contributor
removable media
Is it possible to block specific file types on removable media using Microsoft Defender for Endpoint?
1 Reply
Sort By
- micheleariisSteel Contributor
Konst1 Hi, yes, Microsoft Defender for Endpoint (ASR Rules) allows you to control access to specific types of files on removable media. You can configure policies to block or allow read, write and execute permissions for files based on their name, path or extension. For example, you can prevent users from running files with extensions such as .exe, .bat, .cmd on USB devices.
here is the link: https://learn.microsoft.com/it-it/mem/intune/protect/endpoint-security-asr-policy