
Defender Endpoint Protection for Linux - Threat Status not supported
Hi,
I have deployed Defender for Endpoint to a number of Linux Azure VMs and successfully onboarded them to the Microsoft 365 Defender portal. However, in my Log Analytics ProtectionStatus table,
I see the following values for threat status:
Threat status - Unknown
ThreatStatusDetails - Threat Status is currently not supported in MDATP
ThreatStatusRank - 470
Can someone please confirm if this is simply a case of it not being supported for Linux (RHEL 8.x in my case), or is there a configuration required somewhere that I'm missing.
ProtectionStatus looks ok:
ProtectionStatus - Real time protection
ProtectionStatusDetails - MDATP is running healthy
I've searched online and can find no reference to "Threat Status is currently not supported in MDATP" anywhere..
Thanks
Microsoft 365 and Office | Install, redeem, activate | For business | Windows
