Manage Suppression Rules
In brief
The suppression rules article now includes instructions for viewing a suppression rule’s details. Its publication date and custom metadata were also updated.
What Defender admins need to know
Administrators can use the added instructions when reviewing suppression rules; no configuration change is required.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
View details of a suppression rule
To view the details of a suppression rule, perform the following steps:
In the navigation pane, select Settings > Endpoints > Rules > Alert suppression. The list of suppression rules that users in your organization have created is displayed.
Select a rule name. Details of the rule is displayed. You'll see the rule details such as status, scope, action, number of matching alerts, created by, and date when the rule was created. You can also view associated alerts and the rule conditions.
@@ -10,11 +10,11 @@ ms.collection: - tier2 ms.topic: how-to ms.subservice: edr-ms.date: 06/16/2026+ms.date: 07/03/2026 appliesto: - Microsoft Defender for Endpoint Plan 1 - Microsoft Defender for Endpoint Plan 2-ms.custom: sfi-ga-nochange, msecd-doc-authoring-1014+ms.custom: sfi-ga-nochange, msecd-doc-authoring-1016 ai-usage: ai-assisted ---@@ -40,6 +40,8 @@ You can view a list of all the suppression rules and manage them in one place. Y ## View details of a suppression rule +To view the details of a suppression rule, perform the following steps:+ 1. In the navigation pane, select **Settings** \> **Endpoints** \> **Rules** \> **Alert suppression**. The list of suppression rules that users in your organization have created is displayed. 1. Select a rule name. Details of the rule is displayed. You'll see the rule details such as status, scope, action, number of matching alerts, created by, and date when the rule was created. You can also view associated alerts and the rule conditions. 