Skip to main content
Solved

Removing the "Exclusion" option from Microsoft Defender

  • February 5, 2024
  • 2 replies
  • 95 views

Forum|alt.badge.img+3

Hello,

We're deploying MS Defender, but need some help with how to remove or hide the "Exclusion" option from MS Defender user interface, if it's possible. My current configuration "MDATP MDAV configuration settings" appears to enable to exclude a default path, but I prefer to not have "Exclusion" option available or visible.

 

Best answer by andrew_nicholas

You need to set the value of exclusionsMergePolicy to admin_only as in the below.

<key>exclusionsMergePolicy</key> <string>admin_only</string>

This will disable it and leave text that it is blocked by policy. 

2 replies

Forum|alt.badge.img+13
  • Honored Contributor
  • Answer
  • February 6, 2024

You need to set the value of exclusionsMergePolicy to admin_only as in the below.

<key>exclusionsMergePolicy</key> <string>admin_only</string>

This will disable it and leave text that it is blocked by policy. 


Forum|alt.badge.img+3
  • Author
  • New Contributor
  • February 7, 2024

You need to set the value of exclusionsMergePolicy to admin_only as in the below.

<key>exclusionsMergePolicy</key> <string>admin_only</string>

This will disable it and leave text that it is blocked by policy. 


Thank you that worked!