How to enable “reputation-based protection” for an entire domain

西谷 英俊 0 Reputation points
2024-06-10T02:04:31.9233333+00:00

Hello,

I am running a domain in a non-corporate organization (educational institution).

As such, “ reputation-based protection” is disabled.

How can I enable it the same way as a company?

I am assuming I need to set up some GPO or registry.

Environment

Server: Windows Server 2016 (using Active Directory)

Client: Windows 11 22H2

Windows for business | Windows Server | User experience | Other
Windows for business | Windows Client for IT Pros | User experience | Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Yanhong Liu 14,200 Reputation points Microsoft External Staff
    2024-06-12T06:33:36.34+00:00

    Hello,

    Thank you for posting in Q&A forum.

    To enable Reputation-Based Protection in a domain environment, do the following:

    On the Group Policy Management computer, open the Group Policy Management Console, right-click the Group Policy Object you want to configure, and select Edit.

    On the Group Policy Editor screen, expand the Computer Configuration folder, and then locate the following item:

    Computer Configuration > Policies > Administrative Templates > Windows Components > Windows Defender Antivirus

    Enable the item named Configure protection for potentially unwanted applications, and in Options, select Block to block potentially unwanted applications.

    For more information, refer to the following links: Tutorial GPO - Enable the Windows Defender reputation based protection (techexpert.tips)

    Best Regards,

    Yanhong Liu

    ============================================

    If the Answer is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.