Forum Discussion

drivesafely's avatar
drivesafely
Brass Contributor
Mar 02, 2025
Solved

Intune Security baseline - Defender settings

Hello All,

We're configuring the Security Baselines policy for Windows in Intune and noticed a section for Defender settings. We have Intune Plan 1 license, and don't have a Defender for Endpoint license and are using the default Windows Defender on Windows 10/11. After we enroll the device to Intune and configure the Security baseline policy, can someone confirm if settings like ASR, Network Protection, Cloud Protection, Local Admin Merge, etc., under the Defender section, will apply to our devices if configured?

Thanks, 

  • Applied is not equal to being enforced in this case. The device needs to be onboarded to MDE for the mssense to establish connection with Defender cloud service and provide cloud based security. 

  • rahuljindal-MVP's avatar
    rahuljindal-MVP
    Bronze Contributor

    Applied is not equal to being enforced in this case. The device needs to be onboarded to MDE for the mssense to establish connection with Defender cloud service and provide cloud based security. 

    • drivesafely's avatar
      drivesafely
      Brass Contributor

      Hello rahuljindal-MVP 

      Thanks for your response.

      I applied all Defender settings to a test device and noticed that settings like Cloud Protection, Network Protection, Behavior Monitoring, and Scanning are applied (based on Intune status), but ASR settings are not. Does this mean the applied settings will work on these devices?

      Thanks.

Resources