Microsoft Virtual Desktop and Microsoft Defender

mwhite 0 Reputation points
2023-06-05T20:28:39.7766667+00:00

We have onboarded our Windows Virtual Desktop into Windows Defender using the below link and they enrolled just fine:

https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/configure-endpoints-vdi?view=o365-worldwide

However, the issue is we do not see any of our WVD machines in Intune like we do other servers. Other servers that are onboarded to Defender show up in Intune as Managed By MDE and MDE is how those servers get our Defender policies. Since WVD is in Defender, but not being managed by MDE, it is not getting our Defender policies. Any help on what we can do to accompolish this is much appreciated!

Thanks!

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,720 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Mohammed Altamash Khan 2,076 Reputation points
    2023-06-06T09:49:14.9433333+00:00

    Hi

    Since you didn't mention much detail about your WVD subscription architecture.

    • It is always recommended to deploy WVD machines in a separate subscription. It become more easy to manage and avoid conflict policy with VM in azure and also cost management.
    • If all your machines are windows & you planning to adopt MDE agent on all machine in the subscription , you can enable simply in Defender for cloud - Environment Setting - Expand & select your subscription - Defender Plan - Servers : Configure - Enable the endpoint.
    • This setting will start pushing MDE agent in all machine.
    • Refer snapshots
    • User's image

    User's image

    --- if you find this useful , please accept the answer -----

    0 comments No comments

  2. vipullag-MSFT 24,111 Reputation points Microsoft Employee
    2023-06-06T12:46:35.02+00:00

    Hello mwhite

    Welcome to Microsoft Q&A Platform, thanks for posting your query here.

    Security management for Microsoft Defender for Endpoint will not work on non-persistent desktops, like Virtual Desktop Infrastructure (VDI) clients or Azure Virtual Desktops.

    Ref: https://learn.microsoft.com/en-us/mem/intune/protect/mde-security-integration?view=o365-worldwide

    User's image

    Hope this helps.

    If the suggested response helped you resolve your issue, please 'Accept as answer', so that it can help others in the community looking for help on similar topics.