Deploy Attack Surface Reduction Rules from Microsoft Intune

Поділитися
Вставка
  • Опубліковано 29 лис 2024

КОМЕНТАРІ • 10

  • @sunildahiya6363
    @sunildahiya6363 Рік тому

    Thanks for such a well explained deployment of ASR Rules.

  • @jmemusic
    @jmemusic Рік тому

    Where is the link to the second video talking about the exclusions? It is not on the description and the recommended video only talks about Log Analytics

  • @krishdayananda4662
    @krishdayananda4662 Рік тому

    Great video, what is recommendation around enabling all 16 rules should we use one ASR rule or separate rule for each configuration to have more control over exceptions. Thanks

    • @ConceptsWork
      @ConceptsWork  Рік тому +1

      I would suggest to start with machines from different business units, enable all the rules in audit mode. Check ASR reports section to get the dump of all the files getting impacted, add valid exclusions first and then enabled rules in block mode.

    • @krishdayananda4662
      @krishdayananda4662 Рік тому

      @@ConceptsWork Thanks, I was wondering, if I start the audit mode and identify that I need to enable exclusions for a selected number of computers for Adobe child processes and another selected number of computers for Office macros, how should we apply these settings? Should we have two separate ASR policy profiles in Intune?

  • @janeshaabeygunawardana1280
    @janeshaabeygunawardana1280 Рік тому

    Great video! Thank you so much!

  • @n.vasiliu
    @n.vasiliu Рік тому

    Hi. You mentioned the link to the Office document that creates child processes. Do you mind sharing it? Thanks.

  • @machine5464
    @machine5464 Рік тому

    Very well explained.

  • @MichaelKeller-u1d
    @MichaelKeller-u1d Рік тому

    Are these the best practise deployments?