Managing Linux protection settings
With MDE now deployed to your Linux servers, it’s time to focus on customizing its protection settings. This section will educate you on the fundamentals of how Linux settings are deployed, how to manage scanning and remediation, exclusion control, and how updates can be scheduled.
As in other chapters, our focus here is enterprise deployment. While the sudo mdatp config
command is available for individual hands-on keyboard servers, just as it was for macOS, we’re going to focus on the configuration profile file. This file is how settings are controlled centrally.
Understanding MDE configuration profile files
Settings are deployed to Linux servers with a configuration profile, like the type of profile you learned about for macOS in the previous chapter. The difference for Linux is the format: JSON.
The good news is that JSON files are easier to read than macOS’s XML files but maintain a similar structure, so you’...