maciejrebisz.com

IT

How to get Windows 10 onboarded with Windows Defender ATP – Intune (MDM) – Mobile-First Cloud-First

maximios June 25, 2022

With the release of windows 10 anniversary update the client site of Windows Defender Advanced Threat Protection (WDATP) will be integrated.

To read more about Windows Defender Advanced Threat Protection (WDATP) take a look here: https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp

This blog post is not how the WDATP is working but how to get a Windows 10 onboarded with the help of Intune MDM policy.

First of all it requires some basic understanding about how the CSP is working.

Here is a the layout of the configuration service provider  (CSP) settings for WDATP – more info at https://msdn.microsoft.com/en-us/library/windows/hardware/mt723296(v=vs.85).aspx

Intune and Windows 10 both native supports CSP.

To setup the Onboarding first download the configuration file from WDATP.

In the menu go to Endpoint Management

Choose Mobile Device Management and download the packages

The file will be downloaded as a .zip file – extract the file and you get

The content of this file is what connects your Windows 10 devices to the WDATP tenant.

Now for the Intune part of the onboarding process.

In the Intune Console

Go to Policy -> Configuration Policy -> Add…

Create a Custom Configuration (Windows 10 Desktop and Mobile and later) policy

  1. Enter a name for the policy
  2. Enter a description
  3. Click Add.. to create the CSP setting

Now you need to enter all the setting for the Onboarding CSP

  1. Settings name: Onboarding (I always use the setting name)
  2. Settings description (I always use the OMA-URL)
  3. Data type : String (It is very important to use the correct data type otherwise the policy will fail)
  4. OMA-URI :  ./Device/Vendor/MSFT/WindowsAdvancedThreatProtection/Onboarding
  5. Value : use the content from the previous downloaded WindowsDefenderATP.onboarding file
  6. Click : ok

Click Save Policy

Click yes to deploy the policy

Find a device group to deploy the policy to (when dealing with CSP policy that starts with ./Device/ always deploy it to devices, and if it starts with ./User/ deploy it to a group of users)

Now you can manual sync the Windows with Intune to onboard the device to WDATP – or just wait to the next sync cycle.

The you can see in the WDATP console that the devices is coming into the Machine View

Related Posts

IT /

Intune – Windows device enrollment restrictions – Cloud First

IT /

How to add “hidden” Windows UWP to Windows Store for Business – Cloud First

IT /

Office 2016 Active Directory-Based activation – Cloud First

‹ A standard AzureAD user have access to browse the admin portal – Mobile-First Cloud-First › Win32 App Inventory with Intune Management Extension – Mobile-First Cloud-First

Recent Posts

  • Intune – Windows device enrollment restrictions – Cloud First
  • How to add “hidden” Windows UWP to Windows Store for Business – Cloud First
  • Office 2016 Active Directory-Based activation – Cloud First
  • How to deploy Windows Local Experience Packs with Intune – Cloud First
  • Conditional Access for Outlook Web Access (OWA) – Cloud First

Recent Comments

No comments to show.

Archives

  • November 2025
  • October 2025
  • August 2025
  • July 2025
  • June 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • November 2024
  • September 2024
  • July 2024
  • June 2024
  • March 2024
  • December 2023
  • August 2023
  • June 2023
  • March 2023
  • February 2023
  • December 2022
  • September 2022
  • August 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • January 2022
  • December 2021
  • October 2021
  • September 2021
  • August 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • February 2020
  • January 2020
  • December 2019
  • October 2019
  • September 2019
  • June 2019
  • April 2019
  • March 2019
  • February 2019
  • March 2018
  • February 2018
  • December 2017
  • October 2017
  • August 2017

Categories

  • IT

Back to Top

© maciejrebisz.com 2026
Powered by WordPress • Themify WordPress Themes