Skip to content

Commit

Permalink
Merge pull request #2221 from MicrosoftDocs/main
Browse files Browse the repository at this point in the history
Publish main to live, 12/19, 11:00 AM IST
  • Loading branch information
aditisrivastava07 authored Dec 19, 2024
2 parents 948ea39 + d9bbc1c commit d60c09f
Show file tree
Hide file tree
Showing 2 changed files with 8 additions and 3 deletions.
7 changes: 5 additions & 2 deletions defender-endpoint/network-protection.md
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ title: Use network protection to help prevent connections to malicious or suspic
description: Protect your network by preventing users from accessing known malicious and suspicious network addresses
ms.service: defender-endpoint
ms.localizationpriority: medium
ms.date: 12/13/2024
ms.date: 12/18/2024
audience: ITPro
author: denisebmsft
ms.author: deniseb
Expand Down Expand Up @@ -63,8 +63,11 @@ Here are a few important points to keep in mind:
- Encrypted URLs (full path) are only blocked on Microsoft browsers (Internet Explorer, Microsoft Edge).
- Encrypted URLs (FQDN only) are blocked in non-Microsoft browsers.
- URLs loaded via HTTP connection coalescing, such as content loaded by modern CDNs, are only blocked on Microsoft browsers (Internet Explorer, Microsoft Edge), unless the CDN URL itself is added to the indicator list.

- Network Protection will block connections on both standard and non-standard ports.

- Full URL path blocks are applied for unencrypted URLs.

There might be up to two hours of latency (usually less) between the time when the action is taken and the URL/IP is blocked.

Watch this video to learn how network protection helps reduce the attack surface of your devices from phishing scams, exploits, and other malicious content:
Expand Down
4 changes: 3 additions & 1 deletion defender-endpoint/web-protection-overview.md
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@ ms.author: deniseb
author: denisebmsft
ms.reviewer: tdoucette
ms.localizationpriority: medium
ms.date: 10/23/2024
ms.date: 12/18/2024
manager: deniseb
audience: ITPro
ms.collection:
Expand Down Expand Up @@ -53,6 +53,8 @@ Web threat protection includes:
> - Only single IP addresses are supported (no CIDR blocks or IP ranges) in custom indicators.
> - Encrypted URLs (full path) can only be blocked on first party browsers (Internet Explorer, Edge).
> - Encrypted URLs (FQDN only) can be blocked in third party browsers (i.e. other than Internet Explorer, Edge).
> - URLs loaded via HTTP connection coalescing, such as content loaded by modern CDNs, are only blocked on Microsoft browsers (Internet Explorer, Microsoft Edge), unless the CDN URL itself is added to the indicator list.
> - Network Protection will block connections on both standard and non-standard ports.
> - Full URL path blocks can be applied for unencrypted URLs.
There might be up to two hours of latency (usually less) between the time the action is taken, and the URL and IP being blocked. For more information, see [Web threat protection](web-threat-protection.md).
Expand Down

0 comments on commit d60c09f

Please sign in to comment.