What is Azure Security Linux Agent?

Bartosz Wysocki 50 Reputation points
2023-05-26T10:04:49.9933333+00:00

As per title. Does anyone know What is Azure Security Linux Agent and its role beyond what's stated in the policy file: "Configure supported Linux Arc machines to automatically install the Azure Security agent. Security Center collects events from the agent and uses them to provide security alerts and tailored hardening tasks (recommendations). Target Linux Arc machines must be in a supported location"

To explain in more detail. In Azure Arc, I already have an MDE extension which should already provide security alerts and recommendations via Defender for Cloud.

Is it a legacy agent? There is very little information you can find about this extension with completely 0 guides about uninstalling/installing manually.

Azure Arc
Azure Arc
A Microsoft cloud service that enables deployment of Azure services across hybrid and multicloud environments.
525 questions
0 comments No comments
{count} votes

Accepted answer
  1. Sedat SALMAN 14,180 Reputation points MVP
    2023-05-27T11:48:05.8+00:00

    The Azure Security Linux Agent is a newer version of the Linux analytics agent for Azure Security Center, designed to improve the onboarding of Linux VMs and servers to the Security Center.

    The Azure Security Linux Agent is part of the Azure virtual machine (VM) extensions, which are small applications that provide post-deployment configuration and automation tasks on Azure VMs. These extensions are installed and managed by the Azure control plane. The Azure Linux Agent is responsible for processing the platform extension commands and ensuring the correct state of the extension inside the VM

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.