Microsoft Defender for Identity Directory Services account in Microsoft Defender XDR

Applies to:

  • Microsoft Defender XDR
  • Defender for Identity

This article explains how to configure the Microsoft Defender for Identity Directory Services account in Microsoft Defender XDR.

Important

As part of the convergence with Microsoft Defender XDR, some options and details have changed from their location in the Defender for Identity portal. Please read the details below to discover where to find both the familiar and new features.

Configure Directory Services account

To connect the sensor with your Active Directory domains, you'll need to configure Directory Services accounts.

  1. In Microsoft Defender XDR, go to Settings and then Identities.

    The Identities option in the Settings page

  2. Select Directory Service accounts. You'll see which accounts are associated with which domains.

    The Directory Service accounts menu item

  3. If you select an account, a pane will open with the settings for that account.

    The Account settings page

  4. To add a new Directory Services account, select Create new account and fill in the Account name, Domain, and Password. You can also choose if it's a Group managed service account (gMSA), and if it belongs to a Single label domain.

    The Create new account option

  5. Select Save.

See also