Skip to main content

EDR – Microsoft Defender for Linux

OIT recommends Microsoft Defender for Endpoint on all University owned workstations. Linux support is no longer offered by OIT on unmanaged devices. However, OIT still offers licensing for RedHat Enterprise Linux and has verified support for Defender for Endpoint on RHEL 8 and newer.

Features

OIT's EDR recommendation for Linux workstations, Defender for Endpoint, provides antivirus, antispyware, ransomware protection and intrusion detection and response capabilities for CU Boulder owned devices. 

For Unix and Linux Servers, OIT recommends CrowdStrike. While CrowdStrike is the recommended solution for Linux Servers, you may select to use Defender for Endpoint on your Linux Server. If you would like to purchase and run Defender for Endpoint on your server, you must purchase a license.

Microsoft Defender for Endpoint is a comprehensive, cloud-native endpoint security solution that delivers visibility and AI-powered cyberthreat protection to help stop cyberattacks at CU Boulder. Defender for Endpoint provides central reporting to the Office of Information Security in order to mitigate and investigate the scope and depth of cyber-attacks, ransomware and malware.

*Note: This is only required for devices that are not managed by an IT Professional or already enrolled in Secure Computing.

Who can get it

Faculty, Staff, and student staff conducting official university business. 

How to get it