You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: memdocs/intune/fundamentals/whats-new.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -216,7 +216,7 @@ The **All devices** option is now available for [compliance policy](../protect/c
216
216
When you include the *All devices* group you can then exclude individual groups of devices to further refine the assignment scope.
217
217
218
218
#### Trend Micro – New mobile threat defense partner<!-- 11017779 -->
219
-
You can now use [Trend Micro Mobile Security](../protect/trend-micro-mobile-threat-defense-connector.md) as an integrated mobile threat defense (MTD) partner with Intune. By configuring the Trend MTD connector in Intune, you can control mobile device access to corporate resources using conditional access that's based on risk assessment.
219
+
You can now use [Trend Micro Mobile Security as a Service](../protect/trend-micro-mobile-threat-defense-connector.md) as an integrated mobile threat defense (MTD) partner with Intune. By configuring the Trend MTD connector in Intune, you can control mobile device access to corporate resources using conditional access that's based on risk assessment.
220
220
221
221
For more information, see:
222
222
-[Mobile threat defense integration with Intune](../protect/mobile-threat-defense.md)
Copy file name to clipboardExpand all lines: memdocs/intune/protect/mtd-apps-ios-app-configuration-policy-add-assign.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -157,9 +157,9 @@ Use the same Azure AD account previously configured in the [Symantec Endpoint Pr
157
157
158
158
Create the iOS app configuration policy as described in the [using iOS app configuration policy](../apps/app-configuration-policies-use-ios.md) article. For more information, see [Sophos Intercept X for Mobile iOS - Available managed settings](https://community.sophos.com/kb/133963) in the Sophos knowledge base.
159
159
160
-
### Trend Micro Mobile Security app configuration policy
160
+
### Trend Micro Mobile Security as a Service app configuration policy
161
161
162
-
See the instructions for [using Microsoft Intune app configuration policies for iOS](../apps/app-configuration-policies-use-ios.md) to add the Trend Micro Mobile Security app configuration policy.
162
+
See the instructions for [using Microsoft Intune app configuration policies for iOS](../apps/app-configuration-policies-use-ios.md) to add the Trend Micro Mobile Security as a Service app configuration policy.
Copy file name to clipboardExpand all lines: memdocs/intune/protect/trend-micro-mobile-threat-defense-connector.md
+16-11Lines changed: 16 additions & 11 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,7 +1,7 @@
1
1
---
2
2
# required metadata
3
3
4
-
title: Trend Micro Mobile connector with Intune
4
+
title: Trend Micro Mobile Security as a Service connector with Intune
5
5
titleSuffix: Intune on Azure
6
6
description: Set up the Trend Micro Mobile Threat Defense connector with Intune.
7
7
keywords:
@@ -29,11 +29,16 @@ search.appverid: MET150
29
29
ms.collection: M365-identity-device-management
30
30
---
31
31
32
-
# Use Trend Micro Mobile Security with Intune
32
+
# Use Trend Micro Mobile Security as a Service with Microsoft Intune
33
33
34
-
Control mobile device access to corporate resources using Conditional Access based on risk assessment conducted by Trend Micro Mobile Security, a mobile threat defense (MTD) solution that integrates with Microsoft Intune. Risk is assessed based on telemetry collected from devices running the Trend Micro Mobile Agent app.
34
+
Control mobile device access to corporate resources using Conditional Access based on risk assessment conducted by Trend Micro Mobile Security as a Service, a mobile threat defense (MTD) solution that integrates with Microsoft Intune. Risk is assessed based on telemetry collected from devices protected by the Trend Micro Mobile Security as a Service, including:
35
35
36
-
You can configure Conditional Access policies based on a Trend Micro risk assessment, enabled through Intune device compliance policies for enrolled devices. You can set up your policies to allow or block noncompliant devices from accessing corporate resources based on detected threats.
36
+
- Malicious apps installed
37
+
- Malicious network behavior and profiles
38
+
- Operating system vulnerabilities
39
+
- Device misconfiguration
40
+
41
+
You can configure Conditional Access policies based on Trend Micro Mobile Security as a Service’s risk assessment, enabled through Intune device compliance policies for enrolled devices. You can set up your policies to allow or block noncompliant devices from accessing corporate resources based on detected threats.
37
42
38
43
For more information about how to integrate Trend Micro with Microsoft Intune, see [Integration with Microsoft Endpoint Manager (Intune)](http://docs.trendmicro.com/en-us/enterprise/trend-micro-vision-one/mobile-security/getting-started-with_003/integration-with-int.aspx) in the [Trend Micro Mobile Security documentation](https://docs.trendmicro.com/en-us/enterprise/trend-micro-vision-one/mobile-security.aspx).
39
44
@@ -53,11 +58,11 @@ For more information about how to integrate Trend Micro with Microsoft Intune, s
53
58
54
59
## How do Intune and the Trend Micro MTD connector help protect your company resources?
55
60
56
-
The Trend Micro Mobile Agent app for Android and iOS/iPadOS captures file system, network stack, device, and application telemetry where available, then sends the telemetry data to the *Mobile Security* cloud service to assess the device's risk for mobile threats.
61
+
The Trend Micro Mobile Security as a Service mobile agent app for Android and iOS/iPadOS captures file system, network stack, device, and application telemetry where available, then sends the telemetry data to Trend Micro Mobile Security as a Service to assess the device's risk for mobile threats.
57
62
58
-
-**Support for enrolled devices** - Intune device compliance policy includes a rule for MTD, which can use risk assessment information from Trend Micro. When the MTD rule is enabled, Intune evaluates device compliance with the policy that you enabled. If the device is found noncompliant, users are blocked access to corporate resources, such as Exchange Online and SharePoint Online. Users also receive guidance from the Trend Micro Mobile Agent app installed on their devices to resolve the issue and regain access to corporate resources. To support using Trend Micro with enrolled devices:
63
+
-**Support for enrolled devices** - Intune device compliance policy includes a rule for MTD, which can use risk assessment information from Trend Micro. When the MTD rule is enabled, Intune evaluates device compliance with the policy that you enabled. If the device is found noncompliant, users are blocked access to corporate resources, such as Exchange Online and SharePoint Online. Users also receive guidance from the Trend Micro Mobile Security as a Service mobile agent app installed on their devices to resolve the issue and regain access to corporate resources. To support using Trend Micro with enrolled devices:
59
64
60
-
-[Add MTD apps to devices](../protect/mtd-apps-ios-app-configuration-policy-add-assign.md)
65
+
-[Add MTD apps to devices](../protect/mtd-apps-ios-app-configuration-policy-add-assign.md) (This is done automatically when setting up Trend Micro Mobile Security as a Service integration)
61
66
-[Create a device compliance policy that supports MTD](../protect/mtd-device-compliance-policy-create.md)
62
67
-[Enable the MTD connector in Intune](../protect/mtd-connector-enable.md)
63
68
@@ -107,7 +112,7 @@ Detect threats like **Man-in-the-middle** in network and prevent synchronization
107
112
108
113
## Next steps
109
114
110
-
-[Integrate Trend Micro with Intune](../protect/trend-micro-mtd-connector-integration.md)
111
-
-[Set up Trend Micro Mobile Agent app](../protect/mtd-apps-ios-app-configuration-policy-add-assign.md)
Copy file name to clipboardExpand all lines: memdocs/intune/protect/trend-micro-mtd-connector-integration.md
+32-25Lines changed: 32 additions & 25 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -3,7 +3,7 @@
3
3
4
4
title: Set up Trend Micro MTD integration with Intune
5
5
titleSuffix: Intune on Azure
6
-
description: "Trend Micro Mobile Security connector integration with Intune"
6
+
description: "Trend Micro Mobile Security as Service connector integration with Intune"
7
7
keywords:
8
8
author: brenduns
9
9
ms.author: brenduns
@@ -29,15 +29,15 @@ search.appverid: MET150
29
29
ms.collection: M365-identity-device-management
30
30
---
31
31
32
-
# Connect Trend Micro Mobile Security with Microsoft Intune
32
+
# Connect Trend Micro Mobile Security as a Service with Microsoft Intune
33
33
34
-
Connect the Trend Micro MTD connector to monitor and mitigate device risk levels on Intune-managed devices. Trend Micro Mobile Security works by reporting device risk levels to Microsoft Intune. Intune then uses that information to enforce the appropriate app configuration and risk assessment policies. For more information about Trend Micro Mobile Security, see [Getting Started with Mobile Security](https://docs.trendmicro.com/en-us/enterprise/trend-micro-vision-one/mobile-security/getting-started-with_003.aspx) in the Trend Micro documentation.
34
+
Connect Trend Micro Mobile Security as a Service to monitor and mitigate device risk levels on Intune-managed devices. Trend Micro Mobile Security as a Service works by reporting device risk levels to Microsoft Intune. Intune then uses that information to enforce the appropriate app configuration and risk assessment policies. For more information about Trend Micro Mobile Security as a Service, see [Getting Started with Mobile Security](https://docs.trendmicro.com/en-us/enterprise/trend-micro-vision-one/mobile-security/getting-started-with_003.aspx) in the Trend Micro documentation.
35
35
36
-
This article describes the requirements and steps to connect the MTD connector in your tenant.
36
+
This article describes the requirements and steps to connect Trend Micro Mobile Security as a Service in your tenant.
37
37
38
38
## Before you begin
39
39
40
-
The following subscriptions and accounts are required to integrate Trend Micro Mobile Security with Microsoft Intune.
40
+
The following subscriptions and accounts are required to integrate Trend Micro Mobile Security as a Service with Microsoft Intune.
41
41
42
42
- Microsoft Intune subscription
43
43
- Azure Active Directory (Azure AD) account with Global Administrator rights to grant the following permissions:
@@ -47,39 +47,46 @@ The following subscriptions and accounts are required to integrate Trend Micro M
47
47
- Send device information to Intune
48
48
- Admin sign-in credentials to access the Trend Micro Vision One management console
49
49
50
-
### App authorization
50
+
### Trend Micro Mobile Security as a Service App authorization
51
51
52
-
The following authorization process happens when you connect the Trend Micro Mobile Security MTD connector:
52
+
The following authorization process happens when you configure the integration with Trend Micro Mobile Security as a Service:
53
53
54
-
- Allow Trend Micro Mobile Security to communicate information related to device health state back to Intune. To grant these permissions, you must use Global Administrator credentials. Granting permissions is a one-time operation. After the permissions are granted, the Global Administrator credentials aren't needed for day-to-day operation.
55
-
- Allow Trend Micro Mobile Security to sync Azure AD enrollment group membership to populate its device's database.
54
+
- Allow Trend Micro Mobile Security as a Service to communicate information related to device health state back to Intune. To grant these permissions, you must use Global Administrator credentials. Granting permissions is a one-time operation. After the permissions are granted, the Global Administrator credentials aren't needed for day-to-day operation.
55
+
- Allow Trend Micro Mobile Security as a Service to sync Azure AD enrollment group membership to populate its device's database.
56
56
- Allow Trend Micro Vision One management console to use Azure AD Single Sign On (SSO).
57
-
- Allow Trend Micro Mobile Agent app to sign in using Azure AD SSO.
57
+
- Allow Trend Micro Mobile as a Service agent app to sign in using Azure AD SSO.
58
+
- Allow Trend Micro Mobile Security as a Service to get installed app information to perform malware scanning.
59
+
- Allow Trend Micro Mobile Security as a Service to add its mobile apps in Intune for deployment.
60
+
- Allow Trend Micro Mobile Security as a Service to create device configuration profiles.
61
+
- Allow Trend Micro Mobile Security as a Service to perform remote actions when necessary.
58
62
59
63
For more information about consent and Azure AD applications, see [Request the permissions from a directory admin](/azure/active-directory/develop/v2-permissions-and-consent#request-the-permissions-from-a-directory-admin).
60
64
61
-
## Set up Trend Micro MTD connector
65
+
## Configuration Overview
66
+
67
+
The configuration of Trend Micro Mobile Security as a Service and Intune integration can be done on [Trend Micro Vision One console](https://portal.xdr.trendmicro.com/) with the following steps:
68
+
69
+
1.**Configure Intune integration settings.** - Grant permissions required by Trend Micro Mobile Security as a Service, select the platforms of your mobile devices, and choose data synchronization frequency. Device configuration profiles and app configuration policies are created automatically in Intune.
70
+
71
+
2.**Select groups to install Trend Micro Mobile Security as a Service mobile app.** - Trend Micro Mobile Security as a Service mobile app installs automatically on devices in the selected groups.
72
+
73
+
3.**(Optional) Create mobile policies.** - Optionally create customized mobile security policies provided by Trend Micro Mobile Security as a Service. For more information, see [Configuring Mobile Policies](https://docs.trendmicro.com/en-us/enterprise/trend-micro-xdr-help/configuringmobilepolicy).
74
+
75
+
4.**Confirm mobile app status update.**
76
+
77
+
## Set up Mobile Security as a Service integration
62
78
63
79
1. Sign in to the [Microsoft Endpoint Manager admin center](https://go.microsoft.com/fwlink/?linkid=2109431) with an Intune administrator account.
64
80
2. Go to **All services** > **Tenant administration**.
65
81
3. Select **Connectors and tokens**.
66
82
4. Under **Cross platform**, select **Mobile Threat Defense**.
67
83
5. Select **Add**.
68
84
6. For **Select the Mobile Threat Defense connector to setup**, choose **Trend Micro**.
69
-
7. Select Open the Trend Micro admin console. Keep the Microsoft Endpoint Manager tab open for later.
70
-
8. Sign in with your Azure AD account, and then follow the instructions in [Setting up Intune Integration](https://docs.trendmicro.com/en-us/enterprise/trend-micro-vision-one/mobile-security/getting-started-with_003/integration-with-int/setting-up-intune-in.aspx) (opens Trend Micro Mobile Security documentation) to complete setup.
71
-
9. After you finish setup in the Trend Micro Vision One console, return to your tab in the Microsoft Endpoint Manager admin center.
72
-
10. Under **Compliance policy evaluation**, turn on the following settings:
73
-
74
-
-**Connect Android devices version 7.0 and above to Trend Micro**
75
-
-**Connect iOS/iPadOS devices version 11.0 and above to Trend Micro**
76
-
77
-
These settings allow Trend Micro Mobile Security to evaluate the devices in your organization.
78
-
79
-
Configure additional settings to meet your organization’s requirements.
80
-
81
-
11. Select **Create** to save your connector configurations.
85
+
7. Select **Open the**[**Trend Micro Vision One console**](https://portal.xdr.trendmicro.com/). Keep the Microsoft Endpoint Manager tab open for later.
86
+
8. Sign in with your Trend Micro Vision One administration account, and then follow the instructions in [Setting up Intune Integration](https://docs.trendmicro.com/en-us/enterprise/trend-micro-vision-one/mobile-security/getting-started-with_003/integration-with-int/setting-up-intune-in.aspx) (opens Trend Micro Mobile Security documentation) to complete setup.
87
+
9. After you finish setup in the Trend Micro Vision One console, Trend Micro Mobile Security as a Service is now available in Intune.
82
88
83
89
## Next steps
84
90
85
-
-[Set up Trend Micro Mobile Agent app for enrolled devices](../protect/mtd-apps-ios-app-configuration-policy-add-assign.md)
91
+
-[Customize Mobile Policies in Trend Micro Mobile Security as a Service](https://docs.trendmicro.com/en-us/enterprise/trend-micro-vision-one/mobile-security/mobile-policy.aspx)
92
+
-[Create Mobile Threat Defense (MTD) device compliance policy with Intune](../protect/mtd-device-compliance-policy-create.md)
0 commit comments