Defender ATP for Linux Intelligence Updates

Borgna, Andrew 1 Reputation point
2020-08-11T12:32:23.74+00:00

Do MS Defender for Linux agents require external access for intelligence updates? Or can a share repository be set up similar to the instruction below for Windows that would allow us to have a centralized VM for pulling down and distributing updates to the Linux agents?

https://video2.skills-academy.com/en-us/windows/security/threat-protection/microsoft-defender-antivirus/deployment-vdi-microsoft-defender-antivirus#download-and-unpackage-the-latest-updates

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Borgna, Andrew 1 Reputation point
    2020-08-13T15:22:53.517+00:00

    Understood. Let me know what you hear back. I'm wondering if process can be set up similar to how you can download and unpackage updates on Windows to apply for linux. Then we could use the process in the below article to set up a proxy to distribute the updates.

    https://video2.skills-academy.com/en-us/windows/security/threat-protection/microsoft-defender-atp/linux-static-proxy-configuration

    0 comments No comments