Oct 06 2022 05:53 AM
Is there a way to limit the amount of cloud traffic sent from Defender from Endpoint? What I meant is, can I limit the endpoints, or is ALL traffic sent as soon I pull the trigger?
This is to judge about the impact of our SOC people who will get all that event loaded into their dashboard
Oct 06 2022 06:35 AM
Oct 06 2022 06:53 AM
Hi @RVC,
Your correct here, once turned on all data will get send to Defender for Cloud Apps for Shadow IT analysis.
Oct 10 2022 01:37 AM
@Keith_Fleming thanks for your confirmation.
What does this mean for licensing requirements? Not all our users will get an E5 license, while Defender is rolled out on every endpoint? Or will the traffic only be shared if the endpoint has the Microsoft Defender for Endpoint Plan 2 license assigned?