Skip to content

Commit 5f0356a

Browse files
committed
Updating assignment filters doc
1 parent f118b86 commit 5f0356a

1 file changed

Lines changed: 7 additions & 3 deletions

File tree

memdocs/intune/protect/mde-security-integration.md

Lines changed: 7 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: brenduns
88
ms.author: brenduns
99
manager: dougeby
10-
ms.date: 01/12/2022
10+
ms.date: 04/05/2022
1111
ms.topic: how-to
1212
ms.service: microsoft-intune
1313
ms.subservice: protect
@@ -46,7 +46,7 @@ This scenario extends the Microsoft Endpoint Manager Endpoint Security surface t
4646

4747
## Monitor status
4848

49-
Status and reports for MDE policies are available from the policy node under Endpoint security in the Microsoft Endpoint Manager admin center.
49+
Status and reports for policies targeted at devices in this channel are available from the policy node under Endpoint security in the Microsoft Endpoint Manager admin center.
5050

5151
Drill in to the policy type, Antivirus or Firewall, and then select the policy to view its status. Policies for MDE have a *Policy type* of either *Microsoft Defender Antivirus (Preview)* or *Microsoft Defender Firewall (Preview)*.
5252

@@ -58,6 +58,10 @@ When you select a policy, you'll see information about the device check-in statu
5858

5959
## Known limitations and considerations
6060

61+
### Assignment Filters and Security Management for Microsoft Defender for Endpoint
62+
63+
Assignment filters are not supported for devices communicating through the Microsoft Defender for Endpoint channel. While assignment filters can be added to a policy that could be targeted at these devices, the device will ignore assignment filters. For assignment filter support, the device must be enrolled in to Microsoft Endpoint Manager.
64+
6165
### Co-existence with Microsoft Endpoint Configuration Manager
6266

6367
When using Configuration Manager, the best path for management of security policy is using the [Configuration Manager tenant attach](../../configmgr/tenant-attach/endpoint-security-get-started.md). In some environments it may be desired to use Security Management for Microsoft Defender for Endpoint. When using Security Management for Microsoft Defender for Endpoint with Configuration Manager, endpoint security policy should be isolated to a single control plane. Controlling policy through both channels will create the opportunity for conflicts and undesired results.
@@ -76,7 +80,7 @@ The following security settings are pending deprecation. The Security Management
7680
- AllowOnAccessProtection (under **Antivirus**)
7781
- AllowIntrusionPreventionSystem (under **Antivirus**)
7882

79-
### Managing Security Configurations on domain controllers
83+
### Managing security configurations on domain controllers
8084

8185
Currently, devices are not supported to complete a Hybrid Join to Azure Active Directory. Since an Azure Active Directory trust is required, domain controllers aren't currently supported. We are looking at ways to add support in the future.
8286

0 commit comments

Comments
 (0)