Onboard Defender for Endpoint without AD

berketjune2012 371 Reputation points
2023-03-17T14:41:51.2533333+00:00

Hello

Is it possible to onboard a Windows 10 machine to Defender for Endpoint that is not connected to Active Directory and not Azure AD Hybrid joined?

Thanks

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,820 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
370 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
{count} votes

3 answers

Sort by: Most helpful
  1. Michael-6094 170 Reputation points
    2023-03-18T12:18:41.7033333+00:00

    Hi @berketjune2012 ,

    it is possible to onboard Defender for Endpoint using a local script

    https://video2.skills-academy.com/en-us/microsoft-365/security/defender-endpoint/configure-endpoints-script?view=o365-worldwide

    Solutions

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    2 people found this answer helpful.
    0 comments No comments

  2. Michael-6094 170 Reputation points
    2023-03-18T12:15:28.05+00:00

    Hi @berketjune2012 ,

    you can use multiple solutions to connect to Defender for Endpoint. In your case you could use the local script option. I provided more information about this:

    https://video2.skills-academy.com/en-us/microsoft-365/security/defender-endpoint/configure-endpoints-script?view=o365-worldwide

    Solutions

    see above information for all available options.

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    0 comments No comments

  3. Andrew Blumhardt 9,831 Reputation points Microsoft Employee
    2023-03-20T01:53:13.5+00:00

    I think you might look into the Enforcement Scope settings. I think this lets you extend Intune policy to unmanaged systems onboarded to MDE.

    https://video2.skills-academy.com/en-us/mem/intune/protect/mde-security-integration#configure-your-tenant-to-support-microsoft-defender-for-endpoint-security-configuration-management

    0 comments No comments