Defender Endpoint Protection for Linux - Threat Status not supported

이 명환 0 Reputation points
2023-12-11T04:40:37.6033333+00:00

Hi,

I have deployed Defender for Endpoint to a number of Linux Azure VMs and successfully onboarded them to the Microsoft 365 Defender portal. However, in my Log Analytics ProtectionStatus table,

I see the following values for threat status:

Threat status - Unknown

ThreatStatusDetails - Threat Status is currently not supported in MDATP

ThreatStatusRank - 470

Can someone please confirm if this is simply a case of it not being supported for Linux (RHEL 8.x in my case), or is there a configuration required somewhere that I'm missing.

ProtectionStatus looks ok:

ProtectionStatus - Real time protection

ProtectionStatusDetails - MDATP is running healthy

I've searched online and can find no reference to "Threat Status is currently not supported in MDATP" anywhere..

Thanks

User's image

Microsoft 365 and Office | Install, redeem, activate | For business | Windows
0 comments No comments
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.