From 21273c77038f856cb7e401d814db7df7770afdda Mon Sep 17 00:00:00 2001 From: "Effie A." <134379334+EffieAntoniadi@users.noreply.github.com> Date: Thu, 23 Apr 2026 11:09:01 +0300 Subject: [PATCH] Update service-account-discovery.md Clarify that auto-discovered service accounts are excluded from classification rules --- defender-for-identity/service-account-discovery.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/defender-for-identity/service-account-discovery.md b/defender-for-identity/service-account-discovery.md index 9a2d9314f4e..c33281729b5 100644 --- a/defender-for-identity/service-account-discovery.md +++ b/defender-for-identity/service-account-discovery.md @@ -98,7 +98,7 @@ Last seen | The date and time of the most recent sign in event over this conne ### Define Service Account classification rules -Service account classification rules let you define your own criteria for identifying service accounts. These rules help you include service accounts that Defender for Identity doesn't identify automatically. For example, some organizations name all their service accounts with a prefix like `srv`. Defender for Identity doesn't automatically detect such naming conventions. By creating a classification rule based on that pattern, you can include those accounts in the Service accounts view. +Service account classification rules let you define your own criteria for identifying service accounts. These rules help you include service accounts that Defender for Identity doesn't identify automatically. For example, some organizations name all their service accounts with a prefix like `srv`. Defender for Identity doesn't automatically detect such naming conventions. By creating a classification rule based on that pattern, you can include those accounts in the Service accounts view. Classification rules are applied only to accounts that are not already automatically identified by Defender for Identity. Accounts detected automatically are excluded from this view. Classification rules work alongside Defender for Identity’s automatic discovery and provide a more complete and customized view of service accounts in your environment.