Windows versions supported in Microsoft Defender for Endpoint Plan 1

Anand R Menon 286 Reputation points
2022-05-25T04:23:35.843+00:00

Hi Team,

We are distributing some MDE P1 licenses for one of our customers. They have a minimal environment with basic cloud-antivirus requirement. They have Windows 7 and Windows 10 devices. But when I go through the documentations, it seems versions before Windows 10 (Windows 7, 8 etc.) and Windows Server versions are not supported in MDE Plan 1. Please clarify on this. If these are not supported as of now, I'd like to request to extend support for these Windows versions in Plan 1(Plan 2 already supports these versions), since Plan 1 may be used by many customers who are less inclined towards cybersecurity and so may be keeping legacy versions of Windows(or for other purposes too). Also, it will be difficult if Server versions are not supported, since it will be impossible to automatically enroll devices using group policy method which can be done in the Domain Controller. Thank you.

Regards,
Anand R Menon

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,751 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,721 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Limitless Technology 43,931 Reputation points
    2022-05-26T07:50:27.133+00:00

    Hello

    Thank you for your question and reaching out. I can understand you are having query related to Windows versions supported in Microsoft Defender for Endpoint Plan 1.

    Currently, Defender for Endpoint Plan 1 supports the following operating systems:

    Windows 7 (ESU required)
    Windows 8.1
    Windows 10, version 1709, or later
    macOS: 11.5 (Big Sur), 10.15.7 (Catalina), or 10.14.6 (Mojave)
    iOS
    Android OS

    Here is the Official documentation for Plan 1 :

    https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/defender-endpoint-plan-1?view=o365-worldwide

    ------------------------------------------------------------------------------------------------------------------------------------------------

    --If the reply is helpful, please Upvote and Accept as answer--

    0 comments No comments

  2. Ed Harrison-MSFT 301 Reputation points
    2022-05-26T16:56:50.353+00:00

    While @Limitless Technology is right that older versions of Windows are supported in Defender P2 (see https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/minimum-requirements?view=o365-worldwide#supported-windows-versions), I believe for P1 only currently supported versions of Windows endpoints are covered (i.e. Win 10+) - as per the specific P1 requirements table at https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/mde-p1-setup-configuration?view=o365-worldwide#review-the-requirements.

    @Anand R Menon - I believe this is primarily down to the fact that Windows versions prior to Windows 10 are no longer in support. As I'm sure you're aware, there are many security risks associated with using out of support operating systems, beyond anti-malware and EDR. If you have ESU for Windows 7 you can benefit from Windows Defender P2, but the reality is that Microsoft really want to encourage users to move to supported versions of the O/S.

    In terms of servers, there is actually a dedicated license SKU which covers "Defender for Endpoint on Servers". This is equivalent in function to the P2 plan, but is a separate license (i.e. you can't just use an MDE P2 license, but need the server SKU). See the note at the bottom of the overview section of https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/configure-server-endpoints?view=o365-worldwide#windows-server-onboarding-overview and the specific license terms at https://www.microsoft.com/licensing/terms/productoffering/MicrosoftDefenderforEndpointServer/all for more.

    For servers, there is an alternative option, which is to use the "Defender for Servers" plan within Microsoft Defender for Cloud. There is more information about this at https://learn.microsoft.com/en-us/azure/defender-for-cloud/defender-for-servers-introduction - unlike the server SKU I mentioned earlier, this is billed through Azure and doesn't have the same requirements on E5 licenses as the standalone server SKU.

    ----------

    --If the reply is helpful, please Upvote and Accept as answer--