1,243 questions with Microsoft Defender for Cloud-related tags

Sort by: Updated
0 answers

nestjs microservices using grpc to azure kubenertes using the LoadBalancer service

Hello, we have deployed a nestjs microservices using grpc to azure kubenertes using the LoadBalancer service method exposing a public IP from azure. The application itself is running and working, but sporadic we are getting the status code 14 unavailable…

Azure Container Registry
Azure Container Registry
An Azure service that provides a registry of Docker and Open Container Initiative images.
418 questions
Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,946 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-25T11:30:13.6866667+00:00
Shuchita Chiwande 0 Reputation points
commented 2024-06-26T17:57:01.14+00:00
kobulloc-MSFT 25,406 Reputation points Microsoft Employee
1 answer

how can i use o365 Defender to push certain windows hostbased firewall rule on windows servers?

hi how can i use o365 Defender to push certain windows host based firewall rule on a windows servers hosted on azure or managed with Azure Arc? and if defender cannot do it , what are the alternative tools ?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-24T11:25:44.58+00:00
adm-d.al-helo 0 Reputation points
answered 2024-06-26T06:32:01.27+00:00
Akshay-MSFT 17,256 Reputation points Microsoft Employee
0 answers

SQL Server: Defender for SQL Server Configuration Issues – Status Not Displayed

I have an SQL Server, and I attempted to configure Defender for SQL Server. However, even after a day, it has not been configured properly, and the menu showing the "Protected" or "Not Protected" status does not appear as expected.…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-12T00:16:07.6366667+00:00
mara7 161 Reputation points
commented 2024-06-26T06:27:37.3066667+00:00
Givary-MSFT 29,831 Reputation points Microsoft Employee
0 answers

Hunting: why some quiries is not working like user name, InitiatingProcessCommandLine , user Id and a lot of them thee is redline under it while it is correctly connected with intune and avaliable

example and most of my quries is like this

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,626 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
170 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint: A Microsoft unified security platform for preventative protection, postbreach detection, and automated investigation and response. Previously known as Microsoft Defender Advanced Threat Protection.Training: Instruction to develop new skills.
23 questions
asked 2024-06-25T23:26:27.2666667+00:00
Abdelgalil, Mohamed 0 Reputation points
commented 2024-06-26T05:45:01.1533333+00:00
Abdelgalil, Mohamed 0 Reputation points
1 answer

Endpoint defender

I I have intune license why i cant unable it in order to push the devices on board?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
369 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,626 questions
asked 2024-06-22T03:10:52.7033333+00:00
question anyone 0 Reputation points
edited the question 2024-06-26T03:59:13.3066667+00:00
VarunTha 4,960 Reputation points Microsoft Vendor
1 answer One of the answers was accepted by the question author.

How rollback Microsoft defender plan settings?

Hi, I just accidentally click the 'Upgrade' button and enabled Microsoft defender trail plan for 4 subscriptions while I was logining Azure SQL databases. Can you tell me how can I rollback that? Because need approval before enable that. Thanks. Best…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2023-12-13T00:14:41.2333333+00:00
Bo Xiao 61 Reputation points
commented 2024-06-25T15:25:21.84+00:00
Ilya Ochnev 0 Reputation points
1 answer

Security Center Remediate security configurations-Ensure 'Replace a process level token' is set to 'LOCAL SERVICE, NETWORK SERVICE'

Can some help me remediate this security center "Ensure 'Replace a process level token' is set to 'LOCAL SERVICE, NETWORK SERVICE'" I have web server (IIS) installed in my VM , The recommended state for this setting is: LOCAL SERVICE,…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2021-06-24T11:17:46.59+00:00
jagadish karem 1 Reputation point
commented 2024-06-25T04:32:38.1+00:00
Pepe O 0 Reputation points
2 answers

Issue with Defender Recommendations - Linux virtual machines should enable Azure Disk Encryption or EncryptionAtHost.

HI i have 3 virtual machines in azure i have enabled one week back Encryption at host for all machines - Now am seeing - Recommendations - Virtual machines and virtual machine scale sets should have encryption at host enabled is now in healthy…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,428 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-15T08:00:35.97+00:00
Kuldeep Singh(OT) 60 Reputation points
commented 2024-06-25T04:29:56.4233333+00:00
Kuldeep Singh(OT) 60 Reputation points
1 answer

Ensuring User Reauthentication and Consolidating Functions with XDR

Issue Description: The CloudApp portal, which facilitated user reauthentication, has been removed. As a result, we need to find a new method to prompt users to sign in again for security purposes. Objective: Our goal is to implement a seamless…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-24T05:24:59.0966667+00:00
VAVA Jeffrey [EPI-Cyber Security] 0 Reputation points
answered 2024-06-24T23:05:43.4933333+00:00
Marilee Turscak-MSFT 35,821 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Connect Defender for Servers to Log Analytics Workspace

We've enabled Defender for Servers and I'd like to confirm how to connect it to our Log Analytics Workspace. The Microsoft Defender XDR connector is already installed, but do we need to install the Microsoft Defender for Cloud connector for this? The…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-18T21:30:59.22+00:00
Richard Long 321 Reputation points
accepted 2024-06-21T18:31:00.3233333+00:00
Richard Long 321 Reputation points
2 answers

How to fix error or warning at this in microsoft defender portal

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-20T23:09:24.7966667+00:00
question anyone 0 Reputation points
answered 2024-06-21T09:29:20.8066667+00:00
Akshay-MSFT 17,256 Reputation points Microsoft Employee
1 answer

I am receiving this notification from the Defender "Insecure SSH private key"

I am receiving this notification from the Defender "Insecure SSH private key" Defender for Servers found a plaintext SSH private key that is part of a pair. It is important to secure the private key to avoid its misuse or leakage. But on the…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-03-14T08:28:38.85+00:00
Pradeep Khantwal 50 Reputation points
answered 2024-06-21T09:21:34.5666667+00:00
Alan La Pietra (CSA) 80 Reputation points Microsoft Employee
1 answer

'Wacatac' malware was detected (Agentless preview)

Hi Team on one of the linux machine Microsoft Defender for Cloud in Security alerts shows malware how to remediate it.

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,428 questions
Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,812 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-04T05:28:32.25+00:00
Pradeep Khantwal 50 Reputation points
commented 2024-06-20T20:28:23.6066667+00:00
deherman-MSFT 34,766 Reputation points Microsoft Employee
1 answer

Info required for migration of MMA to Windows defender Unified agent.

Please help me to identify the specific process for that Microsoft Defender unified agent is running on the server. Scenario is that there are some servers in the environment running with 2012R2 and 2016. And MMA is running on the servers. As a result,…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-05-31T05:22:12.44+00:00
Fadikar, Subhadip 0 Reputation points
answered 2024-06-20T12:22:03.7933333+00:00
Alan La Pietra (CSA) 80 Reputation points Microsoft Employee
1 answer

Custom recommendation I created doesn't get triggered as a recommendation in defender for cloud

I am trying to make custom recommendations work. I created a custom recommendation that looks meta data of a keyvault and checks if PublicNetworkAccess is enabled if so then it finds "iprules" in meta data. If it can see the word…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-13T12:51:18.1+00:00
Khanna, Keshav 0 Reputation points
commented 2024-06-20T11:21:07.74+00:00
Khanna, Keshav 0 Reputation points
7 answers

Defender 365 admin console - Disabled Connected to a custom indicator & Connected to a unsanctionned blocked app rules

I want to know how I can disable these two following alerts : Disabled Connected to a custom indicator Connected to an unsanctioned blocked app I didn't find these alerts on the Alerts Policy of XDR/EPP or Cloud apps. Since all the changed that…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2024-03-21T14:28:41.46+00:00
Étienne Fiset 45 Reputation points
answered 2024-06-19T19:36:11.75+00:00
Étienne Fiset 45 Reputation points
0 answers

Improving CVE checks in Microsoft Defender for Cloud

What are some ways to enhance and evaluate checks for CVE's in Microsoft Defender for Cloud? Could someone please provide a detailed guide or article on how to accomplish this?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-19T14:52:47.9933333+00:00
Ohekpeje 0 Reputation points
commented 2024-06-19T19:30:36.4166667+00:00
Ohekpeje 0 Reputation points
2 answers One of the answers was accepted by the question author.

Antivirus Migration from McAfee to Defender for Server

Hi All, I am currently working on a plan to migrate my antivirus for my servers from mcAfee to Microsoft defender for Server. I would like to know if there is a recommended plan on how to go about this? is there a url where I can have an estimate…

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,479 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,772 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-18T19:43:18.3433333+00:00
AO 40 Reputation points
accepted 2024-06-19T16:05:20.0066667+00:00
AO 40 Reputation points
1 answer One of the answers was accepted by the question author.

Defender Vulnerability Remediation Query

I have some Linux azure vm for which we have vulnerability to be resolved as per defender for cloud vulnerability recommendation. What is know is there a way to remediate all vulnerability findings through azure portal. And 2. We are using…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,428 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-18T10:15:06.6+00:00
Shailesh Ganesh Shripati 170 Reputation points
accepted 2024-06-18T17:01:16.4233333+00:00
Shailesh Ganesh Shripati 170 Reputation points
1 answer

How to Onboard Windows servers to Microsoft Defender for Endpoint using Defender for Cloud

We have configured Microsoft Defender for Server Plan 1 in our environment. How to Onboard windows server automatically in Microsoft defender for endpoint using Defender for cloud. Where we can see the device reporting and logs. What are the RBAC…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,243 questions
asked 2024-06-01T00:15:53.4+00:00
Mahavir Saroj 201 Reputation points
commented 2024-06-18T08:26:57.3066667+00:00
Givary-MSFT 29,831 Reputation points Microsoft Employee