Event banner
Tech Community Live: AMA – Manage endpoint security in Microsoft Endpoint Manager
Event details
Join us for a special Ask Microsoft Anything (AMA) live stream on endpoint security and configuration! The Microsoft Endpoint Security team is here to answer questions about the latest features and capabilities available to enable endpoint security for your hybrid workforce.
This is a great opportunity to learn from Microsoft experts and your peers.
We hope you enjoyed this edition of Tech Community Live! Please take our short survey and let us know what you thought! |
65 Comments
- sooonerCopper ContributorI would love to be able to use proactive remediations to prevent Edge/Chrome from hijacking the default PDF application. We're currently using a configuration profile with DISM and an xml snippet in base 64 but that doesn't seem to be very reliable. Why isn't there an easy and reliable way to set default apps in Windows using MEM?
- JulianP-Frequent ReaderYou can do file Association CSP. https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-applicationdefaults?msclkid=2e686e9bc64711eca8c681f4d1132a3b
- RaslDaslBrass ContributorWe are managing Defender for Windows in CM, macOS in Jamf, Linux in Satellite, all are onboarded to MDE. Where can we get a single pane/dashboard for AV status (most interested in enabled and signature date/version) for all OSes? I see some data in Intune Endpoint Security but no indication of the source as we have no AV policies there.
- RaslDaslBrass ContributorAlso non-persistent VDI...currently in CM but has been an issue.
- will nimmoBrass ContributorHi. I have been reading about the new AutoPatch offering. I havent been able to find details on whether it will include Google Chrome and Microsoft Edge patches. Assuming it does include Edge updates, how do you control which release is deployed? If you could also speak as to how autopatch identifies web app usage to ensure that our internal web app users will be identified in the pilot rings? Is this based on web app data shared with the Azure cloud?
- Heather_Poulsen
Community Manager
will nimmo - We're working with the Autopatch team to organize a dedicated AMA for Autopatch. Stay tuned to the Windows IT Pro Blog or @MSWindowsITPro on Twitter to be notified when this is announced.
- ALourinhoCopper ContributorHi, the MacOs feature will be part of this Tech? Thanks
- BenOgleCopper ContributorGood Morning, When configuring ASR Rules, there are multiple places that they can be configured. Baselines contain ASR configurations in Defender Baselines and Security Baselines, as well as in it's own ASR section. We have had difficulty managing these because any conflicts will result in no rules applying. Why does ASR exist in so many places, and what is a good way to manage ASR rules to prevent conflicts orupdating 3 different sections every time you want to make a change?
- sooonerCopper ContributorI came here to ask the same question!
- John FrenayeCopper ContributorCheck out the 'Microsoft Endpoint Manager' YouTube channel they have a video on settings catalog. They do have future plans it sounds like to make it more clear and configurable via settings catalog. However you can configure it in any section you want (they recommend Endpoint Security blade) , so long as the settings dont conflict they will dedup the CSP's and apply to the device/user.
- Anthony_LaMarkOccasional ReaderHi. Looking forward to this meeting. In ConfigMgr->'Assets and Compliance'->'Compliance Settings'->'Configuration Baselines'->{Baseline object}->Properties->'General tab', there is a checkbox labeled 'Always apply this baseline even for co-managed clients'. Could you talk a little about this checkbox? Specifically, I would like to know what is the WMI/'SMS Provider Server class' and property that stores the value of the checkbox labeled 'Always apply this baseline even for co-managed clients'? If it is not a boolean value (ex: SInt32), what are the legal values for this property? Thank you in advance.
- Anthony_LaMarkOccasional ReaderThanks guys!!!
- jaymcc510Iron Contributorawesome. should be very informative! thanks Microsoft Team
- Heather_Poulsen
Community Manager
We're looking forward to talking with you on April 27th! Have a question for our panel? Post them - early and/or often - here in the Comments!
- ThomasVrhydnBrass ContributorDeepdive technical information about whats happening in the background during the onboarding process. So we know how to troubleshoot the onboarding process. Are their logs files stored? Reg keys? Event viewer?