Microsoft Defender ATP for Linux

Borgna, Andrew 1 Reputation point
2020-07-31T18:04:23.163+00:00

My organization is currently testing Defender ATP for Linux in our Azure Dev Lab and I have a question about virus defintion(.dat) updates for the agents. The documentation that I've been able to find does not discuss the update files and I was wondering if there is any documentation that outlines the process for the Linux agents to receive these daily updates? I'm trying to decipher if external access is required for the agents to get these updates or if we can create a method to pull them into a repo for distribution to the agents.

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Didier3001 986 Reputation points Microsoft Employee
    2020-08-01T09:17:08.383+00:00

    Hi @Borgna, Andrew

    These three links should help:

    Regards,
    Didier3001

    --I hope this helps. Please Accept it as an answer and "Up-Vote" the answer or message(s) that helped you so that it can help others in the community looking for help on similar topics

    0 comments No comments

  2. Borgna, Andrew 1 Reputation point
    2020-08-03T18:52:18.007+00:00

    Thank you for this documentation. Are there instructions and/or a method to configure a repo to pull down/distributes the security intelligence and other updates? We have a similar setup for Windows using SCCM and I was wondering if we could have a single web access point for Linux.

    0 comments No comments