Microsoft Defender for Endpoint
Endpoint protection

Manage Sys Extensions Manual Deployment

In brief

The instructions now identify the Virus & threat protection screen, file selection dialog, and Accessibility list, and add an anchor to the mdatp health output section. Page metadata was also updated.

What Defender admins need to know

Administrators can use the more precise steps when manually deploying Microsoft Defender system extensions; no action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

:::image type="content" source="media/virus-and-threat-protection-screen.png" alt-text="The Virus & threat protection screen containing the Fix button." lightbox="media/virus-and-threat-protection-screen.png":::

  1. Select Fix onin the top-upper-right corner of thisthe Virus & threat protection screen. You get a prompt, as shown in the following screenshot:

    :::image type="content" source="media/prompt-on-virus-and-threat-protection-screen.png" alt-text="The prompt dialog box on the Virus & threat protection screen." lightbox="media/prompt-on-virus-and-threat-protection-screen.png":::

    :::image type="content" source="media/accessibility-and-plus-icon.png" alt-text="The Accessibility menu item and the Plus icon." lightbox="media/accessibility-and-plus-icon.png":::

  2. FromIn the resultant screen,file selection dialog, select Applications from the Favorites pane in the left-side of the screen; select Microsoft Defender; and then select Open at the bottom-right of the screen.

    :::image type="content" source="media/applications-md-options.png" alt-text="The process of selecting Applications and Microsoft Defender." lightbox="media/applications-md-options.png":::

  3. FromIn the resultant screen,Accessibility list, check the Microsoft Defender checkbox.

    :::image type="content" source="media/checking-md-checkbox.png" alt-text="Checking the Microsoft Defender checkbox." lightbox="media/checking-md-checkbox.png":::

Verify a healthy system state

MdatpReview mdatp health output

After completing the manual deployment steps, run mdatp health in Terminal to confirm that Microsoft Defender for Endpoint is running correctly. The following screenshot shows an example of healthy output. In a healthy system, real-time protection is enabled, definitions are up to date, and the system extensions are active.