Microsoft Defender for Endpoint
Endpoint protection

Configure Conditional Access

In brief

The article now explicitly describes enabling Conditional Access for Microsoft Defender for Endpoint with Microsoft Intune and Microsoft Entra ID, and refers to the Microsoft Defender for Endpoint compliance policy evaluation integration. The page date and authoring metadata were also updated.

What Defender admins need to know

Administrators can use the more specific wording to identify the relevant Intune integration when following the setup guidance.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

You need a Microsoft Intune environment with Intune managed and Microsoft Entra joined Windows 10 and Windows 11 devices.

Take the following steps to enable this Conditional Access configuration:for Microsoft Defender for Endpoint with Microsoft Intune and Microsoft Entra ID:

  1. Turn on the Microsoft Intune connection in the Microsoft Defender portal.
  2. Turn on the Defender for Endpoint integration in the Microsoft Intune admin center.

Step 2: Turn on the Defender for Endpoint integration in Intune

Perform the following steps to enable the Microsoft Defender for Endpoint compliance policy evaluation integration in the Microsoft Intune admin center.

  1. In the Microsoft Intune admin center at https://intune.microsoft.com, select Endpoint security > Setup section > Microsoft Defender for Endpoint. Or, to go directly to the Endpoint security | Microsoft Defender for Endpoint page, use https://intune.microsoft.com/#view/Microsoft_Intune_Workflows/SecurityManagementMenu/~/atp.