Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Adding documentation for automatic definitions update behavior #115

Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 2 additions & 0 deletions defender-endpoint/linux-preferences.md
Original file line number Diff line number Diff line change
Expand Up @@ -62,6 +62,7 @@ Specifies the enforcement preference of antivirus engine. There are three values
- Real-time (`real_time`): Real-time protection (scan files as they're modified) is enabled.
- On-demand (`on_demand`): Files are scanned only on demand. In this:
- Real-time protection is turned off.
- Definition updates occur only when a scan starts, even if `automaticDefinitionUpdateEnabled` is set to `true` in on-demand mode.
- Passive (`passive`): Runs the antivirus engine in passive mode. In this case, all of the following apply:
- Real-time protection is turned off: Threats are not remediated by Microsoft Defender Antivirus.
- On-demand scanning is turned on: Still use the scan capabilities on the endpoint.
Expand Down Expand Up @@ -626,6 +627,7 @@ Determines whether security intelligence updates are installed automatically:
|**Data type**|Boolean|Drop down|
|**Possible values**|`true` (default) <p>`false`|Not configured<br>Disabled<br>Enabled (Default)|

Depending on the enforcement level, the automatic security intelligence updates are installed differently. In RTP mode, updates are installed periodically. In Passive/ On-Demand mode updates are installed before every scan.

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Instead of "updates are installed" ==> "Security Intelligence updates are updated/installed before every scan"


### Advanced optional features

Expand Down