
$ sudo tail -f /var/log/microsoft/mdatp/microsoft_defender_np_ext.logĭisable network protection and restart the network connection: $ sudo mdatp config network-protection enforcement-level -value disabledīy default, Linux network protection is active on the default gateway routing and tunneling are internally configured. Inspect diagnostic logs $ sudo mdatp log level set -level debug Check Network Protection has effect on always blocked sites:ī. To onboard the device, you must download the Python onboarding package for Linux server from Microsoft 365 Defender -> Settings -> Device Management -> Onboarding and run: sudo python3 MicrosoftDefenderATPOnboardingLinuxServer.pyĪ. microsoft.list /etc/apt//microsoft-insiders-slow.list The following example shows the sequence of commands needed to the mdatp package on ubuntu 20.04 for insiders-Slow channel. Microsoft Defender for Endpoint Linux client version: 101.78.13 -insiderSlow(Preview)ĭeploy Linux manually, see Deploy Microsoft Defender for Endpoint on Linux manually.Minimum Linux version: For a list of supported distributions, see Microsoft Defender for Endpoint on Linux.



The blocks on outbound HTTP(s) traffic are based on the domain or hostname. Network protection expands the scope of Microsoft Defender SmartScreen to block all outbound HTTP(s) traffic that attempts to connect to low-reputation sources.

Microsoft makes no warranties, express or implied, with respect to the information provided here. Some information relates to prereleased product which may be substantially modified before it's commercially released.
