Template family: Defender
Applies to: Microsoft Defender for Office 365
Where to find it: Secure → Defender → Templates → Augmentt Default

What this template is for

Augmentt default policy based on minimum Microsoft Secure Score recommendations.

What it actually does

Creates a MalwareFilterPolicy in Microsoft Defender for Office 365 configured as follows.

SettingValue
FileTypesace, apk, app, appx, ani, arj, bat, cab, cmd, com, deb, dex, dll, docm, elf, exe, hta, img, iso, jar, jnlp, kext, lha, lib, library, lnk, lzh, macho, msc, msi, msix, msp, mst, pif, ppa, ppam, reg, rev, scf, scr, sct, sys, uif, vb, vbe, vbs, vxd, wsc, wsf, wsh, xll, xz, z
ZapEnabledtrue
QuarantineTagAdminOnlyAccessPolicy
CustomFromName(empty)
FileTypeActionReject
EnableFileFiltertrue
CustomFromAddress(empty)
CustomExternalBody(empty)
CustomInternalBody(empty)
CustomNotificationsfalse
CustomExternalSubject(empty)
CustomInternalSubject(empty)
ExternalSenderAdminAddress(empty)
InternalSenderAdminAddress(empty)
EnableExternalSenderAdminNotificationsfalse
EnableInternalSenderAdminNotificationsfalse

Anything not listed keeps the Microsoft default.


This is an Augmentt Default template, shipped with the product and shared across all customers. Deploying it creates a new policy in the customer tenant; edit the deployed policy rather than the template.