Skip to content

Commit 46c9b53

Browse files
authored
Merge pull request #8126 from Brenduns/mde-security-integration-faq-update
FAQ Details from the MDE team
2 parents 8850c7f + 3d51484 commit 46c9b53

1 file changed

Lines changed: 9 additions & 8 deletions

File tree

memdocs/intune/protect/mde-security-integration.md

Lines changed: 9 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: brenduns
88
ms.author: brenduns
99
manager: dougeby
10-
ms.date: 05/12/2022
10+
ms.date: 07/28/2022
1111
ms.topic: how-to
1212
ms.service: microsoft-intune
1313
ms.subservice: protect
@@ -64,6 +64,14 @@ When you select a policy, you'll see information about the device check-in statu
6464

6565
## Frequently asked questions and considerations
6666

67+
### Device check-in frequency
68+
69+
Devices managed by this capability check in with Microsoft Endpoint Manager every 90 minutes to update policy.
70+
71+
### Devices protected by Tamper Protection
72+
73+
If a device has Tamper Protection turned on, it will not be possible to edit its settings without turning Tamper Protection off. When editing settings for a device with Tamper Protection turned on, Microsoft Endpoint Manager presents a *Failed* setting status with an error code of `-2147024891`.
74+
6775
### Assignment Filters and Security Management for Microsoft Defender for Endpoint
6876

6977
Assignment filters aren't supported for devices communicating through the Microsoft Defender for Endpoint channel. While assignment filters can be added to a policy that could be targeted at these devices, the device will ignore assignment filters. For assignment filter support, the device must be enrolled in to Microsoft Endpoint Manager.
@@ -92,13 +100,6 @@ The following security settings are pending deprecation. The Security Management
92100
### Managing security configurations on domain controllers
93101

94102
Currently, devices are not supported to complete a Hybrid Join to Azure Active Directory. Since an Azure Active Directory trust is required, domain controllers aren't currently supported. We're looking at ways to add this support.
95-
96-
<!-- Removing until GA behavior is known>
97-
### Non-persistent VDI environments
98-
99-
Due to the potential effect on Azure Active Directory environments with respect to device lifecycle and service quota, we advise against testing the current installation files and builds shared in this public preview in a non-persistent VDI environment.
100-
-->
101-
102103
### Server Core installation
103104

104105
Due to the platform limitations of Server core installations, these are not supported by Security Management for Microsoft Defender for Endpoint.

0 commit comments

Comments
 (0)