Microsoft Defender for Endpoint standard connectivity URLs - US government
In brief
The article now lists `*.definitionupdates.microsoft.com` over port 443 as an optional alternate location for Microsoft Defender Antivirus security intelligence updates. The update also refreshes metadata and adds a recent-changes note.
What Defender admins need to know
Administrators managing network allowlists or internally managed updates can review the newly documented endpoint.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
Microsoft Defender for Endpoint standard connectivity URLs - US government
|Microsoft Defender Antivirus|US Gov|MU / WU|443|*.windowsupdate.com|MU / WU - Security intelligence and product updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)|
|Microsoft Defender Antivirus|US Gov|MU (ADL)|443|*.download.windowsupdate.com|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)|
|Microsoft Defender Antivirus|US Gov|MU (ADL)|443|*.download.microsoft.com|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)|
|Microsoft Defender Antivirus|US Gov|MU (ADL)|443|*.definitionupdates.microsoft.com|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)|
|Microsoft Defender Antivirus|US Gov|MU (ADL)|443|fe3cr.delivery.mp.microsoft.com/ClientWebService/client.asmx|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)|
|Microsoft Defender Antivirus|GCC|MAPS|443|unitedstates4.cp.wd.microsoft.us|MAPS - Used by Microsoft Defender Antivirus to provide cloud-delivered protection|Required|Yes||||||
|Microsoft Defender Antivirus|GCC High|MAPS|443|unitedstates1.cp.wd.microsoft.us|MAPS - Used by Microsoft Defender Antivirus to provide cloud-delivered protection|Required|Yes||||||
Changelog
The following table summarizes recent changes to this article.
| Date | Change log |
|---|---|
| 04/14/2026 | Replaced officecdn-microsoft-com.akamaized.net with new CDN ChannelURL reference for Mac/Linux product updates. New CDN endpoint starting with macOS build 101.26012.0012. |
@@ -11,11 +11,11 @@ ms.collection: - m365-security - tier1 ms.reviewer: pahuijbr-ms.date: 06/16/2026+ms.date: 07/03/2026 appliesto: Microsoft Defender for Endpoint Plan 1, Microsoft Defender for Endpoint Plan 2, Microsoft Defender XDR ai-usage: ai-assisted-ms.custom: msecd-doc-authoring-1014+ms.custom: msecd-doc-authoring-1016 --- # Microsoft Defender for Endpoint standard connectivity URLs - US government@@ -83,6 +83,7 @@ The following table lists the Microsoft Defender URLs required for US government |Microsoft Defender Antivirus|US Gov|MU / WU|443|`*.windowsupdate.com`|MU / WU - Security intelligence and product updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)| |Microsoft Defender Antivirus|US Gov|MU (ADL)|443|`*.download.windowsupdate.com`|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)| |Microsoft Defender Antivirus|US Gov|MU (ADL)|443|`*.download.microsoft.com`|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)|+|Microsoft Defender Antivirus|US Gov|MU (ADL)|443|`*.definitionupdates.microsoft.com`|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)| |Microsoft Defender Antivirus|US Gov|MU (ADL)|443|`fe3cr.delivery.mp.microsoft.com/ClientWebService/client.asmx`|ADL - Alternate location for Microsoft Defender Antivirus Security intelligence updates|Optional|Yes|Yes|Yes|||Optional if updates are being managed internally (WSUS/FileShare/ConfigMgr)| |Microsoft Defender Antivirus|GCC|MAPS|443|`unitedstates4.cp.wd.microsoft.us`|MAPS - Used by Microsoft Defender Antivirus to provide cloud-delivered protection|Required|Yes|||||| |Microsoft Defender Antivirus|GCC High|MAPS|443|`unitedstates1.cp.wd.microsoft.us`|MAPS - Used by Microsoft Defender Antivirus to provide cloud-delivered protection|Required|Yes||||||@@ -124,6 +125,8 @@ The following Defender for Endpoint-related client processes generate network co <a name="change-log"></a> ## Changelog +The following table summarizes recent changes to this article.+ |Date|Change log| |---|---| |04/14/2026|Replaced `officecdn-microsoft-com.akamaized.net` with new CDN ChannelURL reference for Mac/Linux product updates. New CDN endpoint starting with macOS build 101.26012.0012.| 