Microsoft Defender EASM
General

Use domain asset filters

In brief

The article metadata was refreshed, the title changed to “Use domain asset filters,” and the defined-value and freeform sections were renamed and given anchors.

What Defender admins need to know

Use the new section names and anchors when creating or updating links to this guidance.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

DomainUse domain asset filters

This article lists the filters that specifically apply to domain assets in Microsoft Defender External Attack Surface Management. Use these filters to refine your inventory searches and locate a specific subset of domain assets. Each filter entry describes the filter's purpose, provides example values, and lists the applicable operators. Some filters offer predefined values from a drop-down list, while others require you to manually enter a value.

Defined Use defined-value domain asset filters

The following filters provide a drop-down list of options to select. The available values are predefined.

| Parked Domain | Indicates whether a website is registered but not connected to an online service (website, email hosting). | true / false | Equals Not Equals | | Domain Expiration | The registration expiry date range for the domain. | Expired, Expires in 30 days, Expires in 60 days, Expires in 90 days, Expires in > 90 days | Equals Not Equals In Not In |

FreeformUse freeform domain asset filters

The following filters require that the user manually enters the value with which they want to search. This list is organized according to the number of applicable operators for each filter, then alphabetically. Note that many values are case-sensitive.