PVS Target Device hangs/freezes when placed under isolation by Windows Defender

PVS Target Device hangs/freezes when placed under isolation by Windows Defender

book

Article ID: CTX570633

calendar_today

Updated On:

Description

The PVS Target VM goes into a hung state

Resolution

Manually disable the isolation feature on Windows Defender with respect to any impacted PVS Target to enable communication with the streaming service again

Problem Cause

The Windows Defender isolation feature is designed to isolate suspected compromised machines from the rest of the network to minimize further impact. The isolated machine remains connected to the Microsoft Defender ATP service for monitoring but will be unable to communicate with other devices on the network. 
A PVS Target Device requires a consistent network connection with the PVS Stream service to be able to stream the required vDisk. By isolating it from the rest of the network this connection will be interrupted and the Target Device will go into a hung state / be unable to boot until the isolation is undone

Based on the above this behavior is to be expected.

Additional Information

https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/respond-machine-alerts?view=o365-worldwide#isolate-devices-from-the-network

https://docs.citrix.com/en-us/tech-zone/learn/tech-briefs/citrix-provisioning.html#target-device-boot-process