EnableRemoteManagedDefaults

[This documentation is preliminary and is subject to change.]

EnableRemoteManagedDefaults specifies whether to configure Windows® Defender to be remotely managed using recommended default settings:

Name Default setting for remote management of Windows Defender

Scan\CheckForSignaturesBeforeScan

true

Scan\AvgCPULoadFactor

20

Threats\ThreatSeverityDefaultAction

quarantine

Scan\DisableRestorePoint

false

Scan\DisableReparsePoint

false

UX Configuration\UILockdown

true

Quarantine\PurgeItemsAfterDelay

35 days

Signature Updates\SignatureUpdateInterval

11 hours

Signature Updates\FallbackOrder

InternalDefinitionUpdateServer|MicrosoftUpdateServer|MMPC

Scan\DisableRemovableDriveScanning

false

Scan\DisableScanningNetworkFiles

true

 

If configured, Windows Defender will not display any user interface on the local computer. The default settings can still be overridden using Group Policy.

Windows Defender is an application that can prevent, remove, and quarantine malware (malicious software) and spyware.

Values

true

Configures Windows Defender for remote management.

false

Does not configure Windows Defender for remote management. This is the default value.

 

Valid configuration passes

oobeSystem

offlineServicing

specialize

Applies to

Windows edition Windows for x86-based computers Windows for x64-based computers
Windows 10 Technical Preview for desktop editions (Home, Pro, and Enterprise) x86 amd64

 

 

 

Send comments about this topic to Microsoft