
Application Control policies deployed with Configuration Manager enable a policy on PCs in targeted collections that meet the minimum Windows version and SKU requirements outlined in this article.

On its own, Application Control does not have any hardware or firmware prerequisites. Windows Defender Application Control is a software-based security layer that enforces an explicit list of software that is allowed to run on a PC. It prevents malicious code from running by ensuring that only approved code, that you know, can be run. Windows Defender Application Control is designed to protect PCs against malware and other untrusted software.


Windows Defender Application Control management with Configuration ManagerĪpplies to: Configuration Manager (current branch) Introduction
