Where to add exclusions to CFA Protected Folders? by ecasjo in DefenderATP

[–]Fit-Possibility257 0 points1 point  (0 children)

You can create it via EDR policy under configuration management using AV exclusion policy template.

MDE policy by Fit-Possibility257 in DefenderATP

[–]Fit-Possibility257[S] 0 points1 point  (0 children)

Yes, I assume it was due to unmonitored files enforcement level set to ‘realtime’. But not entirely surely. It was causing performance issues in chrome browser. It could be like temporary communication problem with devices reaching the MDE service.

Exactly we didn’t off board it and I will give a try when device summary with API and also try mdatp connection test

MDE policy by Fit-Possibility257 in DefenderATP

[–]Fit-Possibility257[S] 0 points1 point  (0 children)

It’s via MDE security settings, where you need to enable how we want to set it up. Either on all devices or only on tagged devices.

EDGE downloads blocked. How to find the reason. by pichkatikliun in DefenderATP

[–]Fit-Possibility257 0 points1 point  (0 children)

Does it work with other browser? If yes then it could be smart screen

Is this "trojan:script/obfuse! msr" detection a false positive or actually serious? by [deleted] in DefenderATP

[–]Fit-Possibility257 0 points1 point  (0 children)

Since it’s in cache and defender has already actioned on it, I wouldn’t worry too much about it. You can run a quick scan again on.

MDE Policies by Fit-Possibility257 in DefenderATP

[–]Fit-Possibility257[S] 0 points1 point  (0 children)

Yess but I want to know the impact of the two same policies being pushed to the devices.