First published on CLOUDBLOGS on May 31, 2016
Background
Windows Defender, System Center Endpoint Protection and our other realtime protection products can offer better user protection by enabling the Microsoft Active Protection Service (MAPS) service. In order to successfully connect, enterprise or advanced users with managed networks may need to allow specific domain names so that connectivity to MAPS functions properly.
Who does this affect?
Typically, these changes affect our enterprise customers and advanced users.
Why are you blogging?
We are slowly rolling out a service endpoint name change for the MAPS service over the next two months, with a complete switch planned by July 30 2016.
The change is automatically configured by the product via normal definition updates, there is no need for the user or administrator to take any direct action in the product.
The new endpoint URI domains begin with “ https://wdcp.microsoft.com ” and " https://wdcpalt.microsoft.com ", so any filtering by domain name that omits these from an allow list will break connectivity to MAPS.
Breaking connectivity to MAPS can result in loss of protection delivered by our real-time signature delivery service that uses this channel.
Recommendation
Allow https://wdcp.microsoft.com/* and https://wdcpalt.microsoft.com/* if there are any firewall or network filtering rules in place that would otherwise deny connectivity to MAPS.
--Microsoft Malware Protection Center
Additional resources:
Background
Windows Defender, System Center Endpoint Protection and our other realtime protection products can offer better user protection by enabling the Microsoft Active Protection Service (MAPS) service. In order to successfully connect, enterprise or advanced users with managed networks may need to allow specific domain names so that connectivity to MAPS functions properly.
Who does this affect?
Typically, these changes affect our enterprise customers and advanced users.
Why are you blogging?
We are slowly rolling out a service endpoint name change for the MAPS service over the next two months, with a complete switch planned by July 30 2016.
The change is automatically configured by the product via normal definition updates, there is no need for the user or administrator to take any direct action in the product.
The new endpoint URI domains begin with “ https://wdcp.microsoft.com ” and " https://wdcpalt.microsoft.com ", so any filtering by domain name that omits these from an allow list will break connectivity to MAPS.
Breaking connectivity to MAPS can result in loss of protection delivered by our real-time signature delivery service that uses this channel.
Recommendation
Allow https://wdcp.microsoft.com/* and https://wdcpalt.microsoft.com/* if there are any firewall or network filtering rules in place that would otherwise deny connectivity to MAPS.
--Microsoft Malware Protection Center
Additional resources:
- What’s New in System Center Configuration Manager
- Get Ready for System Center Configuration Manager
- Start Using System Center Configuration Manager
- Upgrade to System Center Configuration Manager
- Technical Documentation for System Center Configuration Manager
- System Center Configuration Manager Forums
- System Center Configuration Manager Support
- Report an issue
- Provide suggestions
Updated Oct 17, 2018
Version 2.0yvetteomeally
Microsoft
Joined August 30, 2016
Configuration Manager Archive
Follow this blog board to get notified when there's new activity