"Endpoint protection should be installed on machines" recommendations not visible on Microsoft Defender for cloud

Ahtesham Patel 41 Reputation points
2022-09-19T19:20:26.807+00:00

I have virtual machines running in my account. Defender plan for servers is also enabled. I still do not see this recommendation, "Endpoint protection should be installed on machines", in my Microsoft Defender for Cloud recommendations view.

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,201 questions
0 comments No comments
{count} votes

Accepted answer
  1. JamesTran-MSFT 36,376 Reputation points Microsoft Employee
    2022-09-26T21:04:24.04+00:00

    @Ahtesham Patel
    Thank you for following up on this and I'm glad that you were able to get an answer for your issue!

    When it comes to the Microsoft Defender for Cloud - Endpoint protection should be installed on your machines recommendation. This was revised at the end of 2021, which affects how the recommendation displays machines that are powered off. In the previous version, machines that were turned off appeared in the 'Not applicable' list. In the newer recommendation, these machines don't appear in any of the resources lists (healthy, unhealthy, or not applicable). For more info - Endpoint protection assessment and recommendations in Microsoft Defender for Cloud.

    As for the failed recommendation - Install endpoint protection solution on virtual machines, you should be redirected to the new Endpoint protection should be installed on your machines recommendation, when selecting the old recommendation from Microsoft Defender for Cloud.
    244971-image.png

    I hope this helps!

    If you have any other questions, please let me know.
    Thank you for your time and patience throughout this issue.

    ----------

    Please remember to "Accept Answer" if any answer/reply helped, so that others in the community facing similar issues can easily find the solution.

    2 people found this answer helpful.

1 additional answer

Sort by: Most helpful
  1. Andrew Blumhardt 9,496 Reputation points Microsoft Employee
    2022-09-19T21:07:18.453+00:00

    I assume you see those machines in the MDFC inventory. Recommendations are only displayed if at least one device is flagged (even if successful). Look under the "enable Endpoint protection" control. You may need to open a support ticket.