Microsoft Defender for Endpoint
Endpoint protection

Manage Suppression Rules

In brief

The suppression rules article now includes instructions for viewing a suppression rule’s details. Its publication date and custom metadata were also updated.

What Defender admins need to know

Administrators can use the added instructions when reviewing suppression rules; no configuration change is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

View details of a suppression rule

To view the details of a suppression rule, perform the following steps:

  1. In the navigation pane, select Settings > Endpoints > Rules > Alert suppression. The list of suppression rules that users in your organization have created is displayed.

  2. Select a rule name. Details of the rule is displayed. You'll see the rule details such as status, scope, action, number of matching alerts, created by, and date when the rule was created. You can also view associated alerts and the rule conditions.