Windows Defender for Endpoint Client Onboarding
Windows device must be enrolled into Defender to activate Defender for endpoint client.
We have to make sure all the required pre-requires are completed before start device enroll.
Pre-requisites-
- Defender for endpoint license (Plan 1, Plan 2, E3 or E5).
- Should have Security Administrator or Global Administrator Right.
- Device should should have minimum O.S. version.
Architecture, how the device enrollment works.

Device onboarding Tool.
Endpoint | Tool options |
Windows | Local script (up to 10 devices) |
Group Policy | |
Microsoft Endpoint Manager/ Mobile Device Manager | |
Microsoft Endpoint Configuration Manager | |
VDI scripts | |
Integration with Microsoft Defender for Cloud | |
macOS | Local scripts |
Microsoft Endpoint Manager | |
JAMF Pro | |
Mobile Device Management | |
Linux Server | Local script |
Puppet | |
Ansible | |
iOS | Microsoft Endpoint Manager |
Android | Microsoft Endpoint Manager |