chore: add compliance policies
This commit is contained in:
@ -0,0 +1,43 @@
|
||||
{
|
||||
"@odata.type": "#microsoft.graph.windows10CompliancePolicy",
|
||||
"displayName": "Win - Compliance - U - Defender for Endpoint",
|
||||
"description": null,
|
||||
"passwordRequired": false,
|
||||
"passwordBlockSimple": false,
|
||||
"passwordRequiredToUnlockFromIdle": false,
|
||||
"passwordRequiredType": "deviceDefault",
|
||||
"requireHealthyDeviceReport": false,
|
||||
"earlyLaunchAntiMalwareDriverEnabled": false,
|
||||
"bitLockerEnabled": false,
|
||||
"secureBootEnabled": false,
|
||||
"codeIntegrityEnabled": false,
|
||||
"memoryIntegrityEnabled": false,
|
||||
"kernelDmaProtectionEnabled": false,
|
||||
"virtualizationBasedSecurityEnabled": false,
|
||||
"firmwareProtectionEnabled": false,
|
||||
"storageRequireEncryption": false,
|
||||
"activeFirewallRequired": false,
|
||||
"defenderEnabled": true,
|
||||
"signatureOutOfDate": true,
|
||||
"rtpEnabled": true,
|
||||
"antivirusRequired": false,
|
||||
"antiSpywareRequired": false,
|
||||
"deviceThreatProtectionEnabled": false,
|
||||
"deviceThreatProtectionRequiredSecurityLevel": "unavailable",
|
||||
"configurationManagerComplianceRequired": false,
|
||||
"tpmRequired": false,
|
||||
"validOperatingSystemBuildRanges": [],
|
||||
|
||||
// Scheduled Actions (MUST be included in the initial policy creation)
|
||||
"scheduledActionsForRule": [
|
||||
{
|
||||
"ruleName": null,
|
||||
"scheduledActionConfigurations": [
|
||||
{
|
||||
"actionType": "block",
|
||||
"gracePeriodHours": 6
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
}
|
Reference in New Issue
Block a user