POWERSHELL COMMAND
Get-XdrEndpointAdvancedFeatures
Retrieves comprehensive advanced features configuration for Microsoft Defender for Endpoint.
Gets a consolidated view of all advanced features settings from Microsoft Defender for Endpoint, including EDR in block mode, device discovery, integrations, and various security features. This is a wrapper function that combines multiple configuration endpoints into a single, formatted output.
Syntax
Get-XdrEndpointAdvancedFeatures [<CommonParameters>]
Examples
Get-XdrEndpointAdvancedFeatures
Retrieves all advanced features configuration settings with detailed descriptions.
Get-XdrEndpointAdvancedFeatures | Where-Object { $_.Value -eq $true }
Retrieves only the advanced features that are currently enabled.
Output
Type: PSCustomObject[]
Returns an array of custom objects with Name, Value, and Description properties for each advanced feature.