Microsoft Defender for Endpoint
Endpoint protection

Schedule antivirus scans on Linux

In brief

The page title no longer includes “preview.” The command-line section gained an anchor, clearer heading, updated metadata, and identifies `mdatp` as the Microsoft Defender for Endpoint command-line tool.

What Defender admins need to know

No administrator action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Schedule antivirus scans on Linux (preview)

This article describes how to configure scheduled antivirus scans on Microsoft Defender for Endpoint on Linux. It's intended for IT and security administrators who manage Linux devices and want to ensure continuous antivirus protection through centralized scan scheduling. Before you begin, review the prerequisites to ensure your environment meets the necessary requirements.

}


<a name="use-command-line"></a>
### Use the command line to configure scheduled scans

You can configure scheduled antivirus scans directly on a Linux device using the mdatpMicrosoft Defender for Endpoint command-line tool.tool (`mdatp`). This approach is useful for testing or single-device configuration.

**Enable scheduled scans:**