Intune – You can now define update locations for Windows Defender

As you know you can control some settings of Windows Defender through Intune/Endpoint Configuration Manager.

Well, you can now also define update locations to get the definition updates for Windows Defender Antivirus.

To configure the locations, logo to your Endpoint Configuration Manager portal ( and access the Endpoint security\Antivirus configuration blade


Then create (or update) a policy; if you create a policy choose the Microsoft Defender Antivirus profile


The options to configure the update locations (network shares, Microsoft update services, MMPC (Microsoft Malware Protection Center) or internal server) is available under the Updates section; this is also where you can define the network shares where the definition updates will be saved


Benoit Hamet
Benoit Hamet
Benoit is working on Microsoft collaborative technologies He has been awarded as MVP for more than 12 years Currently MVP on Office 365 after being awarded on SharePoint (2011-2012) and Windows client & server (2002-2007) Speaker at various Microsoft events (TechDays, TechNet seminars) and Quest Software He works on on-premises (Active Directory, RADIUS/NPS, Exchange, Skype for Business, SharePoint, SQL, Terminal Server, Windows client and Windows Server) or online (Azure, Intune, Office 365, Exchange Online, SharePoint Online, Skype for Business Online, Teams) technologies