


ensure that even down-level devices are ready for macOS 11 Big Sur upgrade.If the configuration is not deployed prior to the Microsoft Defender ATP for Mac agent update, end-users will be presented with a series of system dialogs asking to grant the agent all necessary permissions associated with the new system extensions.Įven though Microsoft Defender ATP for Mac new implementation based on system extensions is only applicable to devices running macOS version 10.15.4 or later, deploying configuration proactively across the entire macOS fleet will have two benefits:.To ensure that the Microsoft Defender ATP for Mac update is delivered and applied seamlessly from an end-user experience perspective, a new remote configuration must be deployed to all eligible macOS devices before Microsoft publishes the new agent version.The update is applicable to devices running macOS version 10.15.4 or later.An update to the Microsoft Defender ATP for Mac agent is required on all eligible macOS of previous versions prior to moving these devices to macOS 11.Microsoft released an update to Microsoft Defender for Endpoint MacOS that will leverage new system extensions instead of kernel extensions with the following details: Excluded Domains for per-app VPN connections.Prevent users from disabling automatic VPN.Support for 4096-bit SCEP certificate keys.


Microsoft Endpoint Manager now supports the following new device configurations on MacOS Big Sur : Big Sur enhance MDM (Mobile Device Management) protocol as key for automated device enrollment, content caching and managing apps.īig Sur’s code running process has been moved from kernel extensions (KEXTs) to system extensions for security reason. Today we discuss about preparing our MD for Endpoint on Organization’s MacOS Systems and make them ready for “Big Sur”, the greatest and latest version of Mac operating system which is released by Apple on the 12 th of November, 2020.
