Microsoft Defender for Endpoint
Endpoint protection

Manage the live response file library in Microsoft Defender for Endpoint

In brief

The article now links readers to the Library management page and explicitly lists available actions: upload, refresh, view details, view, analyze, download, delete, and filter files. Metadata was also updated.

What Defender admins need to know

Administrators can more easily navigate the guidance and find instructions for managing live response library files.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Manage the live response file library in Microsoft Defender for Endpoint

The Library management page in the Microsoft Defender portal allows you to manage files used during Microsoft Defender for Endpoint live response sessions. You can also add, view, and delete files in the library, instead of uploading them during a live response session.

This articleThe Library management page describes how to view, add, and manage files in the live response library.

For more information about live response, see Investigate entities on devices using live response.

Manage files in the library

The followinglibrary provides options are available for managing existing files in the library:to Upload, Refresh, View details, View file, Analyze, Download, Delete, and Filter files:

Option Description Available from