Microsoft Defender for Endpoint
Endpoint protection

Use Intune Config Manager Microsoft Defender Antivirus

In brief

Updated Microsoft Defender documentation in defender-endpoint/use-intune-config-manager-microsoft-defender-antivirus.md.

What Defender admins need to know

Review the underlying documentation change to determine whether it affects tenant configuration or rollout plans.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

CSP: SignatureUpdateFallbackOrder

This policy setting allows you to specify the order in which different security intelligence update sources are contacted. EnterAlthough the valueunderlying policy is stored as a pipe-separated string, listing the security intelligenceIntune presents this setting as a prioritized list of update sources insources. Administrators should configure the desired order.order using the Intune UI, where sources are evaluated from top to bottom. Possible values include: "InternalDefinitionUpdateServer," "MicrosoftUpdateServer," "MMPC," and "FileShares."

  • Not configured - The setting reverts to the system default. Meaning, security intelligence update sources are contacted in a default order.
  • Enabled - Security intelligence update sources are contacted in the order specified.