Skip to content

Latest commit

 

History

History
27 lines (22 loc) · 2.07 KB

File metadata and controls

27 lines (22 loc) · 2.07 KB

CloudSploit

AZURE / Virtual Machines / VM Agent Enabled

Quick Info

Plugin Title VM Agent Enabled
Cloud AZURE
Category Virtual Machines
Description Ensures that the VM Agent is enabled for virtual machines
More Info The VM agent must be enabled on Azure virtual machines in order to enable Azure Defender for data collection.
AZURE Link https://learn.microsoft.com/en-us/azure/defender-for-cloud/enable-agentless-scanning-vms
Recommended Action Enable the VM agent for all virtual machines.

Detailed Remediation Steps

  1. Log into the Microsoft Azure Management Console.
  2. Select the "Search resources, services, and docs" option at the top and search for "Microsoft Defender for Cloud".
  3. On the "Microsoft Defender for Cloud" page scroll down the left navigation panel and choose "Environment Settings".
  4. On the "Environment Settings" page, select the "Subscription" by clicking on its "Name".
  5. Under the "Settings" page, click on "Defender Plans".
  6. Navigate to the "Server" plan in "Defender Plans" and make sure they are turned "ON". Proceed to Settings for "Server" under "Monitoring Coverage" for plans.
  7. On the "Settings & monitoring" Page turn on "Agentless Scanning for machines".
  8. At the top of "Settings & monitoring" Page click on "Continue" to save the changes made.
  9. Repeat steps number 7 - 8 to enable the VM agent for all virtual machines.