Template family: Defender
Applies to: Microsoft Defender for Office 365
Where to find it: Secure → Defender → Templates → Augmentt Default
What this template is for
Anti-phishing policy configured with More Aggressive configuration.
What it actually does
Creates a AntiPhishPolicy in Microsoft Defender for Office 365 configured as follows.
| Setting | Value |
ExcludedDomains | (none) |
ExcludedSenders | (none) |
HonorDmarcPolicy | true |
DmarcRejectAction | Reject |
SpoofQuarantineTag | AdminOnlyAccessPolicy |
PhishThresholdLevel | 3 |
DmarcQuarantineAction | Quarantine |
TargetedUsersToProtect | (none) |
EnableSpoofIntelligence | true |
AuthenticationFailAction | Quarantine |
TargetedDomainsToProtect | microsoft.com, paypal.com, amazon.com, google.com, apple.com, facebook.com, linkedin.com, twitter.com |
EnableMailboxIntelligence | true |
TargetedUserQuarantineTag | DefaultFullAccessPolicy |
EnableUnauthenticatedSender | true |
TargetedDomainQuarantineTag | DefaultFullAccessPolicy |
EnableFirstContactSafetyTips | true |
EnableSimilarUsersSafetyTips | true |
EnableTargetedUserProtection | false |
ImpersonationProtectionState | Manual |
TargetedUserActionRecipients | (none) |
TargetedUserProtectionAction | Quarantine |
EnableSimilarDomainsSafetyTips | true |
TargetedDomainActionRecipients | (none) |
TargetedDomainProtectionAction | Quarantine |
EnableTargetedDomainsProtection | true |
MailboxIntelligenceQuarantineTag | AdminOnlyAccessPolicy |
EnableUnusualCharactersSafetyTips | true |
EnableMailboxIntelligenceProtection | true |
EnableOrganizationDomainsProtection | true |
MailboxIntelligenceProtectionAction | Quarantine |
MailboxIntelligenceProtectionActionRecipients | (none) |
Anything not listed keeps the Microsoft default.
This is an Augmentt Default template, shipped with the product and shared across all customers. Deploying it creates a new policy in the customer tenant; edit the deployed policy rather than the template.
