Event banner

Tech Community Live: AMA – Manage endpoint security in Microsoft Endpoint Manager

Event Ended
Wednesday, Apr 27, 2022, 09:00 AM PDT
Online

Event details

Join us for a special Ask Microsoft Anything (AMA) live stream on endpoint security and configuration! The Microsoft Endpoint Security team is here to answer questions about the latest features and capabilities available to enable endpoint security for your hybrid workforce.

 

This is a great opportunity to learn from Microsoft experts and your peers. 



We hope you enjoyed this edition of Tech Community Live! Please take our short survey and let us know what you thought!

 

Heather_Poulsen
Updated Dec 27, 2024

65 Comments

  • soooner's avatar
    soooner
    Copper Contributor
    I would love to be able to use proactive remediations to prevent Edge/Chrome from hijacking the default PDF application. We're currently using a configuration profile with DISM and an xml snippet in base 64 but that doesn't seem to be very reliable. Why isn't there an easy and reliable way to set default apps in Windows using MEM?
    • JulianP-'s avatar
      JulianP-
      Frequent Reader
      You can do file Association CSP. https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-applicationdefaults?msclkid=2e686e9bc64711eca8c681f4d1132a3b
  • RaslDasl's avatar
    RaslDasl
    Brass Contributor
    We are managing Defender for Windows in CM, macOS in Jamf, Linux in Satellite, all are onboarded to MDE. Where can we get a single pane/dashboard for AV status (most interested in enabled and signature date/version) for all OSes? I see some data in Intune Endpoint Security but no indication of the source as we have no AV policies there.
    • RaslDasl's avatar
      RaslDasl
      Brass Contributor
      Also non-persistent VDI...currently in CM but has been an issue.
  • will nimmo's avatar
    will nimmo
    Brass Contributor
    Hi. I have been reading about the new AutoPatch offering. I havent been able to find details on whether it will include Google Chrome and Microsoft Edge patches. Assuming it does include Edge updates, how do you control which release is deployed? If you could also speak as to how autopatch identifies web app usage to ensure that our internal web app users will be identified in the pilot rings? Is this based on web app data shared with the Azure cloud?
  • BenOgle's avatar
    BenOgle
    Copper Contributor
    Good Morning, When configuring ASR Rules, there are multiple places that they can be configured. Baselines contain ASR configurations in Defender Baselines and Security Baselines, as well as in it's own ASR section. We have had difficulty managing these because any conflicts will result in no rules applying. Why does ASR exist in so many places, and what is a good way to manage ASR rules to prevent conflicts orupdating 3 different sections every time you want to make a change?
    • soooner's avatar
      soooner
      Copper Contributor
      I came here to ask the same question!
      • John Frenaye's avatar
        John Frenaye
        Copper Contributor
        Check out the 'Microsoft Endpoint Manager' YouTube channel they have a video on settings catalog. They do have future plans it sounds like to make it more clear and configurable via settings catalog. However you can configure it in any section you want (they recommend Endpoint Security blade) , so long as the settings dont conflict they will dedup the CSP's and apply to the device/user.
  • Hi. Looking forward to this meeting. In ConfigMgr->'Assets and Compliance'->'Compliance Settings'->'Configuration Baselines'->{Baseline object}->Properties->'General tab', there is a checkbox labeled 'Always apply this baseline even for co-managed clients'. Could you talk a little about this checkbox? Specifically, I would like to know what is the WMI/'SMS Provider Server class' and property that stores the value of the checkbox labeled 'Always apply this baseline even for co-managed clients'? If it is not a boolean value (ex: SInt32), what are the legal values for this property? Thank you in advance.
  • jaymcc510's avatar
    jaymcc510
    Iron Contributor
    awesome. should be very informative! thanks Microsoft Team
  • We're looking forward to talking with you on April 27th! Have a question for our panel? Post them - early and/or often - here in the Comments! 

    • ThomasVrhydn's avatar
      ThomasVrhydn
      Brass Contributor
      Deepdive technical information about whats happening in the background during the onboarding process. So we know how to troubleshoot the onboarding process. Are their logs files stored? Reg keys? Event viewer?
Date and Time
Apr 27, 20229:00 AM - 10:00 AM PDT