Incident Queue
In brief
The documentation now states that the incident list defaults to incidents from the last week instead of the last six months. The listed 30-day option was removed.
What Defender admins need to know
Admins reviewing older incidents must select a broader time range from the date filter.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
Specify a time range
The default list of incidents is for those that occurred in the last six months.week. You can specify a new time range from the drop-down box next to the calendar icon by selecting:
- One day
- Three days
- One week
- 30 days
30 days- Six months
- A custom range in which you can specify both dates and times
@@ -160,13 +160,12 @@ You can name an asset—such as a user, device, mailbox, application name, o ## Specify a time range -The default list of incidents is for those that occurred in the last six months. You can specify a new time range from the drop-down box next to the calendar icon by selecting:+The default list of incidents is for those that occurred in the last week. You can specify a new time range from the drop-down box next to the calendar icon by selecting: - One day - Three days - One week - 30 days-- 30 days - Six months - A custom range in which you can specify both dates and times 