MC1020209 – Action Required – Microsoft Defender for Cloud Apps Network Configurations Changes

cloudscout.one Icon

check before: 2025-03-27

Product:

Defender, Defender for Cloud Apps, Defender XDR, Microsoft 365 Apps

Platform:

Online, US Instances, World tenant

Status:

Change type:

Admin impact

Links:

Details:

Summary:
Update your firewall rules to allow outbound traffic on port 443 to new CDN endpoints and specific IP addresses by March 27, 2025, to ensure uninterrupted access to Microsoft Defender for Cloud Apps. Detailed instructions and required IP addresses are available in the provided documentation links.

Details:
Due to ongoing work on Microsoft Defender for Cloud Apps aimed at improving security and performance, you are required to update network information in your system's firewall and additional third-party services by the dates noted below.
[When this will happen:]
Please follow these instructions by March 27, 2025, to ensure uninterrupted access to our services.

Change Category:
XXXXXXX ... free basic plan only

Scope:
XXXXXXX ... free basic plan only

Release Phase:

Created:
2025-03-01

updated:
2025-03-01

Task Type

XXXXXXX ... free basic plan only

Docu to Check

XXXXXXX ... free basic plan only

MS How does it affect me

XXXXXXX ... free basic plan only

MS Preperations

XXXXXXX ... free basic plan only

MS Urgency

XXXXXXX ... free basic plan only

MS workload name

XXXXXXX ... free basic plan only

summary for non-techies**

XXXXXXX ... free basic plan only

Direct effects for Operations**

Firewall Configuration Failure
If firewall rules are not updated, outbound traffic on port 443 will be blocked, preventing access to Microsoft Defender for Cloud Apps.
   - roles: Network Administrator, IT Security Officer
   - references: https://aka.ms/AzureServiceTagDocs, https://aka.ms/MDANetworkDocs

Service Disruption
Failure to allow traffic to new CDN endpoints will result in service disruption, affecting users' ability to access security features.
   - roles: End User, System Administrator
   - references: https://aka.ms/AzureServiceTagDocs, https://aka.ms/MDANetworkDocs

Increased Security Risks
Not updating the firewall may expose the organization to security vulnerabilities due to outdated configurations.
   - roles: IT Security Officer, Compliance Officer
   - references: https://aka.ms/AzureServiceTagDocs, https://aka.ms/MDANetworkDocs

User Experience Degradation
Users may experience degraded performance or inability to use Microsoft Defender for Cloud Apps, leading to frustration and decreased productivity.
   - roles: End User, Help Desk Support
   - references: https://aka.ms/AzureServiceTagDocs, https://aka.ms/MDANetworkDocs

Compliance Issues
Failure to comply with the update requirements may lead to non-compliance with security standards and regulations.
   - roles: Compliance Officer, IT Manager
   - references: https://aka.ms/AzureServiceTagDocs, https://aka.ms/MDANetworkDocs

Configutation Options**

XXXXXXX ... paid membership only

Opportunities**

Enhanced Network Security Monitoring
By updating firewall rules to allow outbound traffic to specific IP addresses and CDN endpoints, organizations can enhance their network security monitoring capabilities. This allows for better tracking of data flows and potential threats, leading to improved incident response times.
   - next-steps: Implement a monitoring system to track access to the new endpoints and ensure that any unusual activity is logged and reviewed regularly.
   - roles: IT Security Manager, Network Administrator, Compliance Officer
   - references: https://techcommunity.microsoft.com/t5/security-compliance-identity/what-s-new-in-microsoft-defender-for-cloud-apps/ba-p/2571639, https://www.microsoft.com/en-us/security/business/products/microsoft-defender-cloud-apps

Improved User Experience with Cloud Applications
Updating the firewall rules will ensure uninterrupted access to Microsoft Defender for Cloud Apps, which can enhance user experience by providing seamless access to security features and third-party integrations without connectivity issues.
   - next-steps: Communicate the changes to all users and provide training on how to utilize the features of Microsoft Defender for Cloud Apps effectively after the update.
   - roles: IT Support Staff, End Users, Cloud Application Administrators
   - references: https://techcommunity.microsoft.com/t5/security-compliance-identity/microsoft-defender-for-cloud-apps-portal-access-requirements/ba-p/2277899, https://www.microsoft.com/en-us/security/business/products/microsoft-defender-cloud-apps

Streamlined IT Administrative Tasks
The requirement to update firewall rules presents an opportunity to review and streamline IT administrative tasks related to network configurations. This can lead to more efficient management of firewall settings and better documentation practices.
   - next-steps: Conduct a review of current firewall management practices and create a standardized process for updating and documenting firewall rules in the future.
   - roles: IT Administrator, Network Engineer, IT Manager
   - references: https://www.csoonline.com/article/3603024/5-best-practices-for-firewall-management.html, https://www.paloaltonetworks.com/resources/techbriefs/firewall-management-best-practices

Potentional Risks**

XXXXXXX ... paid membership only

IT Security**

XXXXXXX ... paid membership only

explanation for non-techies**

XXXXXXX ... free basic plan only

** AI generated content. This information must be reviewed before use.

a free basic plan is required to see more details. Sign up here


A cloudsocut.one plan is required to see all the changed details. If you are already a customer, choose login.
If you are new to cloudscout.one please choose a plan.



Last updated 3 weeks ago

Share to MS Teams

Login to your account

Welcome Back, We Missed You!