Microsoft Defender XDR
Hunting and detection

Advanced Hunting Devicebaselinecomplianceassessmentkb Table

In brief

The documentation now specifies that `ConfigurationId` is identified within a benchmark and benchmark version, and documents the `ConfigurationBenchmarkVersion` field.

What Defender admins need to know

Administrators can more accurately interpret configuration records and the benchmark version associated with each configuration.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Column name Data type Description
ConfigurationId string Unique identifierIdentifier for a configuration within a specific configurationbenchmark and benchmark version
ConfigurationName string Display name of the configuration
ConfigurationDescription string Description of the configuration
ConfigurationRationale string Description of any associated risks and rationale behind the configuration
CCEReference string Unique Common Configuration Enumeration (CCE) identifier for the configuration
RemediationOptions string Recommended actions to reduce or address any associated risks
ConfigurationBenchmark string Industry benchmark recommending the configuration
ConfigurationBenchmarkVersionstringVersion of the industry benchmark recommending the configuration
Source dynamic The registry path or other location used to determine the current device setting
RecommendedValue dynamic Set of expected values for the current device setting to be compliant