← All XDRInternals commands

POWERSHELL COMMAND

Get-XdrConfigurationServiceAccountClassification

Retrieves service account classification rules from Microsoft Defender XDR.

View source ↗

Gets the service account classification rules from the Microsoft Defender XDR portal, including rules for identifying and classifying service accounts. This function includes caching support with a 30-minute TTL to reduce API calls.

Syntax

Get-XdrConfigurationServiceAccountClassification [-Force] [<CommonParameters>]

Parameters

-Force

Property Value
Type SwitchParameter
Required No
Position named
Pipeline input No
Default False

Bypasses the cache and forces a fresh retrieval from the API.

Examples

Get-XdrConfigurationServiceAccountClassification
Retrieves the service account classification rules using cached data if available.
Get-XdrConfigurationServiceAccountClassification -Force
Forces a fresh retrieval of the service account classification rules, bypassing the cache.

Output

Type: Object

Returns the service account classification rules configuration.

View source