Forum Discussion
drivesafely
Mar 02, 2025Brass Contributor
Intune Security baseline - Defender settings
Hello All,
We're configuring the Security Baselines policy for Windows in Intune and noticed a section for Defender settings. We have Intune Plan 1 license, and don't have a Defender for Endpoint license and are using the default Windows Defender on Windows 10/11. After we enroll the device to Intune and configure the Security baseline policy, can someone confirm if settings like ASR, Network Protection, Cloud Protection, Local Admin Merge, etc., under the Defender section, will apply to our devices if configured?
Thanks,
Applied is not equal to being enforced in this case. The device needs to be onboarded to MDE for the mssense to establish connection with Defender cloud service and provide cloud based security.
- rahuljindal-MVPBronze Contributor
Applied is not equal to being enforced in this case. The device needs to be onboarded to MDE for the mssense to establish connection with Defender cloud service and provide cloud based security.
- drivesafelyBrass Contributor
Hello rahuljindal-MVP
In that case, without MDE license, it would be better not to apply these Defender settings, as it will not work or have any effect?
Thanks
- rahuljindal-MVPBronze Contributor
Pretty much.
- rahuljindal-MVPBronze Contributor
Not without onboarding to MDE which in turn requires MDE licensing.
- drivesafelyBrass Contributor
Hello rahuljindal-MVP
Thanks for your response.
I applied all Defender settings to a test device and noticed that settings like Cloud Protection, Network Protection, Behavior Monitoring, and Scanning are applied (based on Intune status), but ASR settings are not. Does this mean the applied settings will work on these devices?
Thanks.