{"id":1554,"date":"2024-08-10T22:55:15","date_gmt":"2024-08-10T20:55:15","guid":{"rendered":"https:\/\/cln.io\/blog\/?p=1554"},"modified":"2024-10-12T19:35:29","modified_gmt":"2024-10-12T17:35:29","slug":"getting-microsoft-defender-atp-on-plesk","status":"publish","type":"post","link":"https:\/\/cln.io\/blog\/getting-microsoft-defender-atp-on-plesk\/","title":{"rendered":"Getting Microsoft Defender ATP on Plesk"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Download the onboarding code\/script<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"688\" src=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-5-1024x688.png\" alt=\"\" class=\"wp-image-1556\" srcset=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-5-1024x688.png 1024w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-5-300x202.png 300w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-5-768x516.png 768w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-5.png 1386w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">I dumped the .zip file in \/root\/defender<br>then  execute it with Python to install the right &#8220;stuff&#8221; so the defender binary can talk to your org\/api thing<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"716\" height=\"38\" src=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-6.png\" alt=\"\" class=\"wp-image-1557\" srcset=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-6.png 716w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-6-300x16.png 300w\" sizes=\"auto, (max-width: 716px) 100vw, 716px\" \/><\/figure>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">python MicrosoftDefenderATPOnboardingLinuxServer.py\nGenerating \/etc\/opt\/microsoft\/mdatp\/mdatp_onboard.json ...<\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">Now lets download the  binary installer<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/github.com\/microsoft\/mdatp-xplat\/blob\/master\/linux\/installation\/mde_installer.sh\">https:\/\/github.com\/microsoft\/mdatp-xplat\/blob\/master\/linux\/installation\/mde_installer.sh<\/a><\/p>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">wget https:\/\/raw.githubusercontent.com\/microsoft\/mdatp-xplat\/master\/linux\/installation\/mde_installer.sh\nchmod +x mde_installer.sh\n.\/mde_installer.sh<\/pre>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"180\" src=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-7-1024x180.png\" alt=\"\" class=\"wp-image-1559\" srcset=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-7-1024x180.png 1024w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-7-300x53.png 300w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-7-768x135.png 768w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-7-1536x271.png 1536w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-7.png 1748w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">This should onboard the Plesk with defender.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"688\" src=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-8-1024x688.png\" alt=\"\" class=\"wp-image-1560\" srcset=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-8-1024x688.png 1024w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-8-300x201.png 300w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-8-768x516.png 768w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-8-1536x1031.png 1536w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-8.png 1860w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">Configure defender<\/h2>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">mdatp config real-time-protection --value enabled\nmdatp threat policy set --type potentially_unwanted_application --action block\nmdatp config network-protection enforcement-level --value block\nmdatp config behavior-monitoring --value enabled\nmdatp config behavior-monitoring-statistics --value enabled\nmdatp config ebpf-supplementary-event-provider --value enabled\nmdatp config ptrace-scope --value enabled<\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">Give it a quick full scan, because why the hell not<\/p>\n\n\n\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"generic\" data-enlighter-theme=\"\" data-enlighter-highlight=\"\" data-enlighter-linenumbers=\"\" data-enlighter-lineoffset=\"\" data-enlighter-title=\"\" data-enlighter-group=\"\">mdatp scan full<\/pre>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"473\" height=\"79\" src=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-9.png\" alt=\"\" class=\"wp-image-1561\" srcset=\"https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-9.png 473w, https:\/\/cln.io\/blog\/wp-content\/uploads\/2024\/08\/image-9-300x50.png 300w\" sizes=\"auto, (max-width: 473px) 100vw, 473px\" \/><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>Download the onboarding code\/script I dumped the .zip file in \/root\/defenderthen execute it with Python to install the right &#8220;stuff&#8221; so the defender binary can talk to your org\/api thing Now lets download the binary [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1680,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-1554","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/posts\/1554","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/comments?post=1554"}],"version-history":[{"count":5,"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/posts\/1554\/revisions"}],"predecessor-version":[{"id":1566,"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/posts\/1554\/revisions\/1566"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/media\/1680"}],"wp:attachment":[{"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/media?parent=1554"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/categories?post=1554"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cln.io\/blog\/wp-json\/wp\/v2\/tags?post=1554"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}