I think it may be possible to configure ASR rules using GPO without Intune. Though it can be difficult to manage without data collection. Usually you would audit and review the results to create exceptions before blocking. Intune and MDE help to gather and manage these better.
Microsoft Defender For Endpoint Lic MS Intune is required to use the Attack surface reduction feature ?
Techit Sriwichai
185
Reputation points
My company is using Join ADDS On-Prime not using Azure AD Join but I want to adjust Config Attack surface reduction but I don't have Lic Intune what should I do please guide me
Windows for business | Windows Client for IT Pros | Devices and deployment | Set up, install, or upgrade
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
A cloud-native solution that protects workloads across hybrid and multi-cloud environments with threat detection and security recommendations
Microsoft Security | Intune | Security
Microsoft Security | Intune | Security
Managing and enforcing security policies for devices and apps to protect organizational data through Intune
Answer accepted by question author
Andrew Blumhardt
10,071
Reputation points Microsoft Employee