are Agentless scanning for machines and vulnerability assessment for machines features available under azure gov (GCCH)?

Leonord Joseph 20 Reputation points
2025-05-20T14:48:33.6233333+00:00

The defender for server P2 is activated on my subscription; however, I am not seeing any option to enabled these two features:

  • Agentless scanning for machines
  • vulnerability assessment for machines

I wonder if these are available on GCCH or only commercial.

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
0 comments No comments
{count} votes

Accepted answer
  1. Anonymous
    2025-05-21T10:28:39.2766667+00:00

    Hello Leonord Joseph

    Agentless scanning for machines and Vulnerability assessment for machines is available in Microsoft Defender for Cloud's Government Community Cloud High (GCCH) environment, provided you have the appropriate plans enabled.

    Defender for Servers Plan 2 This plan includes both agentless scanning and agent-based vulnerability assessment. Agentless scanning is enabled by default when Defender for Servers Plan 2 is activated. If it's not enabled, you can manually turn it on through the Environment settings in Defender for Cloud.

    Microsoft Learn

    Defender Cloud Security Posture Management (CSPM): This plan also supports agentless scanning for machines. If you have CSPM enabled, you can activate agentless scanning via the Environment settings. Plan protection features
    User's image If you're not seeing the options to enable these features:

    -Ensure you have Owner or Security Admin permissions at the subscription level. These roles are required to enable agentless scanning and vulnerability assessment.

    -Verify that either Defender for Servers Plan 2 or Defender CSPM is activated in your subscription. Without these plans, the features won't be available.

    -Navigate to Defender for Cloud > Environment settings > Your Subscription > Settings & Monitoring. Here, you should find options to enable both agentless scanning and vulnerability assessment.

    Check these below documents this has detail steps to turn on these settings:
    Enable agentless machine scanning
    Enable vulnerability scanning
    Agentless machine scanning

    I hope this clarifies things.

    Please remember to "Accept Answer", so that others in the community facing similar issues can easily find the answers. if you have any further query do let us know in comment section.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.