MC1060476 - Microsoft Defender XDR services: Deploy the New Defender for Identity sensor on Microsoft Entra Connect servers

Service

Microsoft Defender XDR

Published

Apr 23, 2025

Tag

New feature
Admin impact

Summary

Deploy the new Microsoft Defender for Identity sensor on Microsoft Entra Connect servers to enhance visibility and security in hybrid identity environments. This feature is now generally available and provides deeper insights into identity threats. Review your configuration and notify users as needed.

More information

We are excited to announce the new Microsoft Defender for Identity sensor for Microsoft Entra Connect servers. This addition expands Defender for Identity’s coverage across hybrid identity environments, providing enhanced visibility and security for these critical assets.

When this will happen:

General Availability (Worldwide, GCC, DoD): Available now.

How this will affect your organization:

With the Defender for Identity sensor now available for Entra Connect servers, organizations gain deeper insights into hybrid identity threats. Deploying this sensor allows for more comprehensive monitoring of authentication activities, helping to detect and mitigate potential identity attacks targeting your infrastructure. We strongly recommend installing the Defender for Identity sensor on all Entra Connect servers.

Deploy Defender for Identity sensor for Entra Connect server:

admin controls

New posture recommendations for Entra Connect servers:

admin controls

This change is available by default.

What you need to do to prepare:

Learn more

This rollout is available automatically with no admin action required before the rollout. Review your current configuration to assess the impact on your organization. You may want to notify your users about this change and update any relevant documentation.