Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

PENDING Endpoint detection and response (Server OS)

williame

Member
Messages
8
Reaction score
0
Points
1
We are trying to move MDE onboarding for servers 2019 upwards in to the Intune EDR policy (Auto by Connector) targeted to the Windows platform.

I offboarded a previously MDE onboarded server which was onboarded via SCCM with a compatible MDE onboarding package. It is currently sat offboarded and is Hybrid AD Joined and added to a security group in Intune that the EDR MDE policy is targeting.

MDE is set up correctly as we already have clients that are using the connector that are Co-managed.
The servers are not co-managed as that is not permitted and so until now are also not Sync'd to Intune via Cloud Attach.
Cloud Attach upload is currently uploading only a specific collection that does not include the server, thus it does not appear in Intune.

Does the EDR policy require that SCCM managed devices are uploaded to Intune to take effect?

This would make sense to me but I cannot find Cloud Attach as a prerequisite in the EDR documentation for MDE onboarding via Intune.
 

Forum statistics

Threads
7,184
Messages
28,033
Members
18,320
Latest member
superglue
Back
Top