On-Premise Windows Defender Antivirus Solution for windows server 2022 estate - Management Off

Anonymous
2025-02-07T16:49:27+00:00

For my 30 Wintel Server estate I want to protect my windows server 2022 servers with the included Defender AV (DAV) component.

Will keep that component maintained with WSUS.

Been advised I need to deploy on-premise Configuration Manager (CM) server to maintain Security policies for AV

Where do i collect alerts as I do not have a cloud integration, so no defender portal ?

Been told CM Management console is not god enough to maintain the overall DAV solution.

Been told it will not show DAV alerts from servers.

SO do I have to use a SCOM DAV management pack so i get my threat alerts. Is that where I should get alerts.

I assume then all CM will do is tell me if my DAV components are active on my servers and thats all.

How will it check that my servers DAV are up todate as I cannot connect my CM to the internet.

My restrictions are my only outside connection can be WSUS.

This seems a simple ask , I need to maintain and manage 30 servers AV solution and watch for alerts and threats.

Because of security no cloud integration.

All microsoft guides seem to assume that we have cloud integrations.

Beginning to think WSUS, AD and SCOM are all I need to run solution.

How useful is CM to me.

Confused how I should design this with the correct products as I have simple isolated solution requirements except for WSUS updates

Windows for business | Windows Server | Devices and deployment | System management components

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} vote

2 answers

Sort by: Most helpful
  1. Anonymous
    2025-02-10T06:43:55+00:00

    Hello

    Thank you for posting in the Microsoft Community forum.

    Based on the description, I understand that your question is related to Windows Defender and WSUS.

    Because there are no engineers dealing with this topic on this forum. To be able to address your issue quickly and efficiently, I recommend that you repost your question in the Q&A forum, where there will be a dedicated engineer who will give you a professional and effective answer.

    Here is a link to the forum with questions and answers.

    Questions - Microsoft Q&A

    Click the "Ask a Question" button in the top right corner to post your question and select tags related to your productions.

    Thank you for your understanding and support. If you have any questions or concerns, please let us know.

    Have a nice day.

    Best regards

    Molly

    0 comments No comments
  2. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more