Skip to content

Microsoft Defender Antivirus Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Microsoft Defender AV must be configured for protocol recognition for network protection.

    <VulnDiscussion>This policy setting allows the configuration of protocol recognition for network protection against exploits of known vulnera...
    Rule Medium Severity
  • SRG-APP-000112

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender AV must be configured to not allow local override of monitoring for file and program activity.

    &lt;VulnDiscussion&gt;This policy setting configures a local override for the configuration of monitoring for file and program activity on your com...
    Rule Medium Severity
  • SRG-APP-000112

    <GroupDescription></GroupDescription>
    Group
  • Microsoft Defender AV Group Policy settings must take priority over the local preference settings.

    &lt;VulnDiscussion&gt;This policy setting configures a local override for the configuration to turn on real-time protection. This setting can only ...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules