> For the complete documentation index, see [llms.txt](https://docs.realmjoin.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.realmjoin.com/es/automatizacion/runbooks/runbook-references/device/security/isolate-or-release-device.md).

# Aislar o liberar dispositivo

### Descripción

Este runbook aísla un dispositivo en Microsoft Defender for Endpoint para reducir el riesgo de movimiento lateral y exfiltración de datos. Opcionalmente, puede liberar un dispositivo previamente aislado. Proporcione una breve razón para que la acción quede documentada en el servicio.

### Ubicación

Dispositivo → Seguridad → Aislar o liberar dispositivo

**Nombre completo del runbook**

rjgit-device\_security\_isolate-or-release-device

### Detalles

| Propiedad          | Valor                              |
| ------------------ | ---------------------------------- |
| Versión            | 1.0.1                              |
| Módulos requeridos | RealmJoin.RunbookHelper (>= 0.8.9) |
| Programable        | no                                 |

### Permisos

#### Permisos de aplicación

* **Tipo**: WindowsDefenderATP
  * Machine.Read.All
    * *Busca la máquina de Microsoft Defender for Endpoint mediante /machines filtrado por aadDeviceId*
  * Machine.Isolate
    * *Desencadena la acción de aislar o desaislar la máquina*

### Parámetros

#### DeviceId

El ID de dispositivo del dispositivo de destino.

| Propiedad            | Valor                                                    |
| -------------------- | -------------------------------------------------------- |
| Requerido            | true                                                     |
| Valor predeterminado |                                                          |
| Tipo                 | Cadena                                                   |
| Oculto en el portal  | sí (preestablecido mediante personalización del runbook) |

#### Liberar

"Aislar dispositivo" (valor final: false) o "Liberar dispositivo del aislamiento" (valor final: true) pueden seleccionarse como acción a realizar. Si se establece en false, el runbook aislará el dispositivo en Microsoft Defender for Endpoint. Si se establece en true, liberará un dispositivo previamente aislado del aislamiento en Microsoft Defender for Endpoint.

| Propiedad                        | Valor    |
| -------------------------------- | -------- |
| Requerido                        | true     |
| Valor predeterminado             | Falso    |
| Tipo                             | Booleano |
| Nombre para mostrar en el portal | Acción   |

**Opciones del portal**

| Opción del portal                   | Valor |
| ----------------------------------- | ----- |
| Aislar dispositivo                  | falso |
| Liberar dispositivo del aislamiento | true  |

#### IsolationType

El tipo de aislamiento que se usará al aislar el dispositivo.

| Propiedad            | Valor                                                    |
| -------------------- | -------------------------------------------------------- |
| Requerido            | falso                                                    |
| Valor predeterminado | Completo                                                 |
| Tipo                 | Cadena                                                   |
| Oculto en el portal  | sí (preestablecido mediante personalización del runbook) |

#### Comentario

Un breve motivo para la acción de (des)aislamiento.

| Propiedad                        | Valor                        |
| -------------------------------- | ---------------------------- |
| Requerido                        | true                         |
| Valor predeterminado             | Posible riesgo de seguridad. |
| Tipo                             | Cadena                       |
| Nombre para mostrar en el portal | Motivo del (des)aislamiento  |

[Volver a la vista general de la referencia del runbook](/es/automatizacion/runbooks/runbook-references.md)


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.realmjoin.com/es/automatizacion/runbooks/runbook-references/device/security/isolate-or-release-device.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
