Microsoft Defender
2 TopicsTurn on Memory Integrity through Microsoft Intune
Hi, Question: How to turn on the following setting through Microsoft Intune? Windows Security > Device Security > Core isolation > Memory Integrity (It says: Memory integrity is off. Your device may be vulnerable.) Applied licenses: Microsoft Intune Suite + Microsoft Defender for Endpoint P2 Client OS: Windows 11 It has been weeks since I already applied the following through the Security Baseline Policy for Windows 10 and Later but still the Memory Integrity has not got enabled on any client: Device Guard Credential Guard: (Enabled with UEFI lock): Turns on Credential Guard with UEFI lock. Enable Virtualization Based Security: enable virtualization based security. Require Platform Security Features: Turns on VBS with Secure Boot and direct memory access (DMA). ------ Virtualization Based Technology Hypervisor Enforced Code Integrity: (Enabled with UEFI lock) Turns on Hypervisor-Protected Code Integrity with UEFI lock. The Windows Baseline Security has got applied successfully on all endpoints without any errors or conflicts. Intune Sync and device restart have been performed 100s of times but in vain. Any suggestions would be highly appreciated.432Views0likes0CommentsMS Defender prompting sign-in on iOS Devices
MS Defender is deployed with VPN Tunnel access on iOS device. Tunnel is set to On-Demand VPN. These devices are added to Azure and managed by Intune. Launching a managed app that requires VPN access does not automatically enable Tunnel. Instead, users are prompted that they need to sign-in to Defender. Launching MS Defender does not resolve the prompt, but launching Comp Portal does. There is no prompt to sign-in to Defender unless trying to access a company application. That means before launching ANY company application, the user should validate Comp Portal and MS Defender first, then try to access the resource. This process is extremely inefficient. Why is it that in certain instances MS Defender cannot implement the VPN "on-demand"?651Views0likes2Comments