From 0c7a3688386cfe3a470e1a770f04582a893f0926 Mon Sep 17 00:00:00 2001 From: jcaparas Date: Tue, 15 Aug 2023 11:09:46 -0700 Subject: [PATCH] remove symbol store --- ...configure-network-connections-microsoft-defender-antivirus.md | 1 - 1 file changed, 1 deletion(-) diff --git a/microsoft-365/security/defender-endpoint/configure-network-connections-microsoft-defender-antivirus.md b/microsoft-365/security/defender-endpoint/configure-network-connections-microsoft-defender-antivirus.md index 6280b157b27..79fd6bd8868 100644 --- a/microsoft-365/security/defender-endpoint/configure-network-connections-microsoft-defender-antivirus.md +++ b/microsoft-365/security/defender-endpoint/configure-network-connections-microsoft-defender-antivirus.md @@ -62,7 +62,6 @@ Make sure that there are no firewall or network filtering rules denying access t |Security intelligence updates Alternate Download Location (ADL)
This is an alternate location for Microsoft Defender Antivirus Security intelligence updates, if the installed Security intelligence is out of date (Seven or more days behind).|`*.download.microsoft.com`
`*.download.windowsupdate.com` (Port 80 is required)
`go.microsoft.com` (Port 80 is required)
`https://www.microsoft.com/security/encyclopedia/adlpackages.aspx`
`https://definitionupdates.microsoft.com/download/DefinitionUpdates/`
`https://fe3cr.delivery.mp.microsoft.com/ClientWebService/client.asmx`| |Malware submission storage
This is an upload location for files submitted to Microsoft via the Submission form or automatic sample submission.|`ussus1eastprod.blob.core.windows.net`
`ussus2eastprod.blob.core.windows.net`
`ussus3eastprod.blob.core.windows.net`
`ussus4eastprod.blob.core.windows.net`
`wsus1eastprod.blob.core.windows.net`
`wsus2eastprod.blob.core.windows.net`
`ussus1westprod.blob.core.windows.net`
`ussus2westprod.blob.core.windows.net`
`ussus3westprod.blob.core.windows.net`
`ussus4westprod.blob.core.windows.net`
`wsus1westprod.blob.core.windows.net`
`wsus2westprod.blob.core.windows.net`
`usseu1northprod.blob.core.windows.net`
`wseu1northprod.blob.core.windows.net`
`usseu1westprod.blob.core.windows.net`
`wseu1westprod.blob.core.windows.net`
`ussuk1southprod.blob.core.windows.net`
`wsuk1southprod.blob.core.windows.net`
`ussuk1westprod.blob.core.windows.net`
`wsuk1westprod.blob.core.windows.net`| |Certificate Revocation List (CRL)
Windows use this list while creating the SSL connection to MAPS for updating the CRL.|`http://www.microsoft.com/pkiops/crl/`
`http://www.microsoft.com/pkiops/certs`
`http://crl.microsoft.com/pki/crl/products`
`http://www.microsoft.com/pki/certs`| -|Symbol Store

Microsoft Defender Antivirus uses the Symbol Store to restore certain critical files during the remediation flows.|`https://msdl.microsoft.com/download/symbols`| |Universal GDPR Client
Windows use this client to send the client diagnostic data.

Microsoft Defender Antivirus uses General Data Protection Regulation for product quality, and monitoring purposes.|The update uses SSL (TCP Port 443) to download manifests and upload diagnostic data to Microsoft that uses the following DNS endpoints:
`vortex-win.data.microsoft.com`
`settings-win.data.microsoft.com`| ## Validate connections between your network and the cloud