Skip to content

Commit 48b84ab

Browse files
authored
Merge pull request #7620 from Brenduns/9768396-mde-support-for-ios-app-sync
2205 - 9768396 MDE support for App sync on iOS
2 parents 27f8762 + 9e38ad0 commit 48b84ab

1 file changed

Lines changed: 15 additions & 1 deletion

File tree

memdocs/intune/protect/advanced-threat-protection-configure.md

Lines changed: 15 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords: configure, manage, capabilities, attack surface reduction, next-genera
77
author: brenduns
88
ms.author: brenduns
99
manager: dougeby
10-
ms.date: 04/06/2022
10+
ms.date: 05/23/2022
1111
ms.topic: how-to
1212
ms.service: microsoft-intune
1313
ms.subservice: protect
@@ -79,10 +79,24 @@ You only need to enable Microsoft Defender for Endpoint a single time per tenant
7979

8080
When these configurations are *On*, applicable devices that you manage with Intune, and devices you enroll in the future, are connected to Microsoft Defender for Endpoint for compliance.
8181

82+
For iOS devices, Defender for Endpoint also supports the following settings:
83+
84+
- **Enable App Sync for iOS Devices**: Set to **On** to allow Defender for Endpoint to request metadata of iOS applications from Intune to use for threat analysis purposes. The iOS device must be MDM-enrolled and will provide updated app data during device check-in.
85+
86+
- **Send full application inventory data on personally-owned iOS/iPadOS Devices**: This setting controls the application inventory data that Intune shares with Defender for Endpoint when Defender for Endpoint syncs app data and requests the app inventory list.
87+
88+
When set to **On**, Defender for Endpoint can request a list of applications from Intune for personally-owned iOS/iPadOS devices. This includes unmanaged apps as well as apps that were deployed through Intune.
89+
90+
When set to **Off**, data about unmanaged apps isn’t provided. Intune does share data for the apps that were deployed through Intune.
91+
92+
For more information, see [Mobile Threat Defense toggle options](../protect/mtd-connector-enable.md#mobile-threat-defense-toggle-options).
93+
8294
2. To use Defender for Endpoint with **app protection policies**, configure the following under **App Protection Policy Settings** for the platforms you support. These capabilities are available for Android and iOS/iPadOS.
8395
- Set **Connect Android devices** to Microsoft Defender for Endpoint for app protection policy evaluation to **On**.
8496
- Set **Connect iOS devices** to Microsoft Defender for Endpoint for app protection policy evaluation to **On**.
8597

98+
For more information about both MDM Compliance Policy Settings and App Protection Policy Settings, see [Mobile Threat Defense toggle options](../protect/mtd-connector-enable.md#mobile-threat-defense-toggle-options).
99+
86100
5. Select **Save**.
87101

88102
> [!TIP]

0 commit comments

Comments
 (0)