189 questions with Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps tags

Sort by: Updated
0 answers

Microsoft OneDrive or SharePoint does not redirect session to Conditional Access App Control policy in Microsoft Defender for Cloud App

Hi community, I have questions regarding to Conditional Access App Control policy with Session policy in Microsoft Defender for Cloud App. My goal is monitoring real-time session on OneDrive for Business and SharePoint Online and apply some restriction…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2024-08-13T10:43:00.16+00:00
Kosal Yeang 20 Reputation points
edited a comment 2025-08-02T19:34:58.2033333+00:00
VarunTha 14,865 Reputation points Microsoft External Staff Moderator
11 answers

OpenSSL vulnerabilities showing in Defender Dashboard

We have multiple devices showing up with OpenSSL vulnerabilities. It is detecting two dll files that it is flagging. Which they are libssl-3-x64.dll and libcrypto-3-x64.dll. It is flagging this for multiple different applications through out multiple…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Defender | Microsoft Defender for Identity
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2023-09-22T20:14:57.2433333+00:00
Jeff Thorne 65 Reputation points
edited an answer 2025-08-01T05:50:13.5066667+00:00
RNareddy 2,505 Reputation points Microsoft External Staff Moderator
0 answers

The phone I used in creating the codes for my two factor Authenticator code is broken and now how can I move my codes to a new device/phone? thanks

The phone I used in creating the codes for my two factor Authenticator code is broken and now how can I move my codes to a new device/phone? thanks

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-07-23T19:28:31.4966667+00:00
Kalu Lovert 0 Reputation points
0 answers

Policy Name: Test anoba

Greetings, I have a question about this policy created by Microsoft in my M365 GCC-H tenant FOR Microsoft Defender > App governance > Policies. Is this supposed to be a valid policy to enable/disable? I'm curious since I've configured multiple M365…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-07-18T19:57:28.2966667+00:00
Juan Alicea 0 Reputation points
commented 2025-07-19T12:16:02.4666667+00:00
Juan Alicea 0 Reputation points
0 answers

word.cloud.microsoft, excel.cloud.microsoft. powerpoint.cloud.microsoft bypass Conditional Access App Control Enformment

Have conditional Access policy, which does the following. For an Unmanaged Device (Device not in intune) Allow Access to browser Use Cloud Access App Control Block Downloads This works for the old urls where it routes to ".mcas.ms" to…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-07-14T06:03:41.3566667+00:00
Alexander Alamein 0 Reputation points
1 answer

when im trying to sign in to a app why does it 1 refresh my screen or 2 delete it faster than I can blink! pleash help!

i picked random tags but PLEEEEEEEEEEEEEEASE HELP MEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEE!

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-07-09T15:52:27.6066667+00:00
Monky 0 Reputation points
answered 2025-07-09T16:21:02.1066667+00:00
Monky 0 Reputation points
1 answer

Defender for Cloud apps

Hello Community , Recently we have been receiving alerts related to defender for cloud apps ,but not sure about the fields that have generated in the alert is sufficient for investigation, For further analysis we have reviewed Azure AAD for the apps For…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-06-17T11:00:08.81+00:00
Murali, Akshyalakshmi (ITN) 5 Reputation points
answered 2025-07-07T10:21:53.1933333+00:00
Catherine Kyalo 2,180 Reputation points Microsoft Employee
2 answers

Admin quarantine is grayed out in file policies of MDCA

Hello, In the governance actions of file policies, I am seeing that "Put the file in Admin quarantine" is grayed out. I am an E5 holder and have global admin access across defender portal. Usually this should be enabled and allow me to set…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-07-04T13:57:52.6433333+00:00
Surya kumar 370 Reputation points
commented 2025-07-04T17:32:50.6533333+00:00
Vasil Michev 121.1K Reputation points MVP Volunteer Moderator
0 answers

Restrict “Open in Desktop App” for Unmanaged Devices (SharePoint & OneDrive)

Hello everyone, I’m implementing a company policy that restricts users on unmanaged devices to only open documents (Word, Excel, PowerPoint) via Office for the Web when accessing data on SharePoint Online and OneDrive for Business. The goal is to prevent…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-06-19T12:07:06.6666667+00:00
Khoa Anh Le 0 Reputation points
0 answers

IN MDCA to configure App connector ServiceNow. Suggest which username & password required & what should be the role assigned to user? What table access is required to provide in ServiceNow for completed successful configuration

Hello Team, To configure app connector ServiceNow to Microsoft defender for cloud. Please suggest which username & password do we need to use. This username & password assign to which role in ServiceNow. Which table needs to add to provide the…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-06-17T12:19:21.1266667+00:00
Monika Kumari 0 Reputation points
1 answer

Configuring file policy in Microsoft Cloud App Security

You are configuring a file policy in Microsoft Cloud App Security. You need to configure the policy to apply to all files. Alerts must be sent to every file owner who is affected by the policy. The policy must scan for credit card numbers, and alerts…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-06-10T14:11:44.1333333+00:00
Jagan Purushothaman 0 Reputation points
answered 2025-06-16T09:59:21.09+00:00
Catherine Kyalo 2,180 Reputation points Microsoft Employee
1 answer

Exclude groups or users from unsanctioned apps

Hello guys, is there a way for unsanctioned apps to allow only for a specific groups or users?

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-06-05T10:24:20.53+00:00
Arren Bul-an 25 Reputation points
edited an answer 2025-06-09T07:08:45.5066667+00:00
Catherine Kyalo 2,180 Reputation points Microsoft Employee
2 answers

DLP Policy Not Scanning Inside Compressed Files (Purview)

I'm trying to configure Microsoft Purview to scan inside compressed files (e.g., .zip, .rar) and apply Data Loss Prevention (DLP) policies to prevent sensitive data from being shared via email. However, I'm encountering the following issues: I need to…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
Microsoft Security | Microsoft Purview
asked 2024-12-29T08:53:32.0033333+00:00
Mahmoud Hesham 5 Reputation points
answered 2025-05-29T21:36:53.2066667+00:00
Jose Carlos Vargas Medina 0 Reputation points
4 answers

Logic App Workflow Automation Not Triggering for Security Alerts

I have set up a Logic App to trigger workflow automation for security alerts on Microsoft Defender. However, it is not triggering automatically, even after simulating security alerts on the storage account. I can trigger the alerts manually, and I…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-01-03T10:21:14.96+00:00
Mike Ter 15 Reputation points
answered 2025-05-20T06:45:04.2766667+00:00
Jarno Leikas 35 Reputation points
1 answer One of the answers was accepted by the question author.

Defender Deception Capability Questions

Hello, I've read the documentation on the Deception Capability in Defender and I had some additional questions: Will there be additional documentation for the product once it becomes GA? If you turn off the default rule, will the decoys and lures…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-04-22T13:41:50.7866667+00:00
Alyse Hart 90 Reputation points
commented 2025-05-15T13:37:37.22+00:00
Alyse Hart 90 Reputation points
1 answer

Skip value not taken into consideration for Cloud Apps API

Hi Team, I am using POST endpoint for getting all the alerts that are present in defender for cloud apps. In our instance we have roughly around 6600 alerts and if I increase the skip value to 9000, the API is duplicating the records of last page and…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-05-07T11:29:21.8666667+00:00
Dev Parmar 20 Reputation points
answered 2025-05-22T16:52:36.2766667+00:00
Pauline Mbabu 1,320 Reputation points Microsoft Employee
1 answer

Defender for Exchange online

Hi, I have a fresh Exchange Online tenant with the default domain. I’ve been assigned the task of setting up Exchange Endpoint Protection. I have two questions: What rules or configurations are recommended for Exchange Endpoint Protection? Could you…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-05-14T15:26:41.8766667+00:00
HASSAN BIN NASIR DAR 391 Reputation points
answered 2025-05-23T07:36:36.9066667+00:00
Catherine Kyalo 2,180 Reputation points Microsoft Employee
1 answer

Al intentar hacer el onboarding de un servidor 2016 arroja el siguiente mensaje: "[Error Id: 15, Error Level: 1] Unable to start Microsoft Defender for Endpoint Service." Necesito ver de solucionarlo

Buenas Tardes Estimados, Al intentar hacer el onboarding de un servidor 2016 arroja el siguiente mensaje: "[Error Id: 15, Error Level: 1] Unable to start Microsoft Defender for Endpoint Service." Necesito ver de solucionarlo

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-05-20T15:59:48.13+00:00
Carlos De Jesus 0 Reputation points
commented 2025-05-27T12:05:34.21+00:00
Jose Benjamin Solis Nolasco 5,216 Reputation points
1 answer

Does the Azure Information Protection add-in Microsoft Defender still exist?

The information and screenshots on the page "Classify and protect sensitive information" (https://learn.microsoft.com/en-us/training/modules/microsoft-cloud-app-security/classify-protect-sensitive-information) seem quite stale. The AIP add-on…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-05-27T12:43:54.92+00:00
Anita Okoro 45 Reputation points Microsoft Employee
commented 2025-06-03T11:06:40.2233333+00:00
Catherine Kyalo 2,180 Reputation points Microsoft Employee
0 answers

Microsoft Sentinel/Defender Alerts on Apple iOS Connection to Exchange Online

Many alerts from Microsoft Sentinel/Defender indicate that users are being flagged as compromised. Further investigation reveals that users were accessing Exchange Online from Apple iPhone/macOS devices. The alerts show connections originating from a…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
asked 2025-05-27T16:04:10.89+00:00
brichardi 361 Reputation points
commented 2025-06-03T08:56:04.64+00:00
Catherine Kyalo 2,180 Reputation points Microsoft Employee