You have an Azure Active Directory (Azure AD) tenant and 100 Windows 10 devices that are Azure AD joined and managed by using Microsoft Intune.
You need to configure Microsoft Defender Firewall and Microsoft Defender Antivirus on the devices. The solution must minimize administrative effort.
Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
A . To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Endpoint protection settings.
B . To configure Microsoft Defender Firewall, crate a device configuration profile and configure the Device restrictions settings.
C . To configure Microsoft Defender Firewall, create a Group Policy Object (GPO) and configure Windows Defender Firewall with Advanced Security.
D . To configure Microsoft Defender Antivirus, create a Group Policy Object (GPO) and configure Windows Defender Antivirus settings.
E . To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Device restrictions settings.
F . To configure Microsoft Defender Firewall, create a device configuration profile and configure the Endpoint protection settings.
Answer: AF
Explanation:
F: With Intune, you can use device configuration profiles to manage common endpoint protection security features on devices, including:
– Firewall
– BitLocker
– Allowing and blocking apps
– Microsoft Defender and encryption
Reference:
https://docs.microsoft.com/en-us/mem/intune/protect/endpoint-protection-configure
https://docs.microsoft.com/en-us/mem/intune/protect/endpoint-security-policy#create-an-endpoint-securitypolicy