1,250 questions with Microsoft Defender for Cloud-related tags

Sort by: Updated
0 answers

o365 Defender Portal Incident Notifications

I have followed articles online to setup email notifications for incidents in the defender portal for medium and high detections. I noticed a medium incident in the portal which I did not get an email for. I have read articles online of others having the…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
172 questions
asked 2024-06-29T18:06:55.2166667+00:00
rr-4098 1,321 Reputation points
1 answer

nestjs microservices using grpc to azure kubenertes using the LoadBalancer service

Hello, we have deployed a nestjs microservices using grpc to azure kubenertes using the LoadBalancer service method exposing a public IP from azure. The application itself is running and working, but sporadic we are getting the status code 14 unavailable…

Azure Container Registry
Azure Container Registry
An Azure service that provides a registry of Docker and Open Container Initiative images.
419 questions
Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,951 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-25T11:30:13.6866667+00:00
Shuchita Chiwande 0 Reputation points
commented 2024-06-28T18:11:33.6633333+00:00
kobulloc-MSFT 25,561 Reputation points Microsoft Employee
1 answer

How to fully Uninstall/Clean-up Microsoft Defender Endpoint

Hello, We are having issues trying to use a migration tool to move our devices to another Microsoft tenant. It seems to be struggling gaining access and deleting a regkey that is link to a service for MDE. The tool is running and using the system…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,640 questions
Microsoft Q&A
Microsoft Q&A
Use this tag to share suggestions, feature requests, and bugs with the Microsoft Q&A team. The Microsoft Q&A team will evaluate your feedback on a regular basis and provide updates along the way.
649 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
172 questions
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint: A Microsoft unified security platform for preventative protection, postbreach detection, and automated investigation and response. Previously known as Microsoft Defender Advanced Threat Protection.Training: Instruction to develop new skills.
27 questions
asked 2024-06-27T13:23:57.6933333+00:00
Dan Beeney 0 Reputation points
commented 2024-06-28T15:08:27.03+00:00
Dan Beeney 0 Reputation points
1 answer

How to onboard Defender via userdata scripts?

I am trying to onboard defender to windows servers. By following onboarding steps 1 to 4 in this doco, I was able to onboard defender to windows servers manually. However, we are using userdata powershell scripts for our windows server. I need to put all…

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,494 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
PowerShell
PowerShell
A family of Microsoft task automation and configuration management frameworks consisting of a command-line shell and associated scripting language.
2,256 questions
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint: A Microsoft unified security platform for preventative protection, postbreach detection, and automated investigation and response. Previously known as Microsoft Defender Advanced Threat Protection.Training: Instruction to develop new skills.
27 questions
asked 2024-06-27T05:15:24.6066667+00:00
Byron Liu 0 Reputation points
answered 2024-06-28T12:45:03.19+00:00
Andrew Blumhardt 9,831 Reputation points Microsoft Employee
0 answers

Defender Attack Simulation Training Data Retrival through graph API

I am retireving data from attack simulation training using graph api to devolop Power BI dashboards. How ever when I retriving data from getAttackSimulationTrainingUserCoverage always completionDateTime getting 'null' even trainingStatus = 'completed', I…

Microsoft Graph
Microsoft Graph
A Microsoft programmability model that exposes REST APIs and client libraries to access data on Microsoft 365 services.
11,191 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-28T10:17:24.59+00:00
Akila Ariyarathne 0 Reputation points
edited the question 2024-06-28T10:19:39.2533333+00:00
Akila Ariyarathne 0 Reputation points
1 answer

Blank pages or menu in Microsoft Defender for Cloud

Hi, I have some issues with using Defender for Cloud recently. I am trying to manage my compliance standards to monitor for my subscriptions using the "Regulatory compliance" blade. But as is showing my screenshot, the menu bar is missing. I…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-27T08:41:13.86+00:00
David T 0 Reputation points
answered 2024-06-28T06:36:50.25+00:00
Akshay-MSFT 17,486 Reputation points Microsoft Employee
0 answers

This recommendation is applicable only for resources with MDE discovered.

Hi all, In my microsoft defender I am getting the recommendation as "EDR solution should be installed on Virtual Machines", and in the reason I am getting "This recommendation is applicable only for resources with MDE discovered.".…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-27T11:17:31.1366667+00:00
Vaibhav 0 Reputation points
edited the question 2024-06-28T02:15:54.6333333+00:00
PRADEEPCHEEKATLA-MSFT 83,886 Reputation points Microsoft Employee
0 answers

Can I set an owner on a recommendation in defender for cloud without using governance rules?

We already used governance rules to set owner on severity "high" recommendations in defender for cloud. Now we need to set owners more specific, depending on resource tags. For example we have a recommendation "Windows servers should be…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-27T12:23:35.4433333+00:00
Stephanie Schraufstetter 0 Reputation points
commented 2024-06-27T17:36:12.32+00:00
Andrew Blumhardt 9,831 Reputation points Microsoft Employee
1 answer

Custom recommendation I created doesn't get triggered as a recommendation in defender for cloud

I am trying to make custom recommendations work. I created a custom recommendation that looks meta data of a keyvault and checks if PublicNetworkAccess is enabled if so then it finds "iprules" in meta data. If it can see the word…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-13T12:51:18.1+00:00
Khanna, Keshav 0 Reputation points
commented 2024-06-27T17:08:17.8533333+00:00
Khanna, Keshav 0 Reputation points
0 answers

Hunting: why some quiries is not working like user name, InitiatingProcessCommandLine , user Id and a lot of them thee is redline under it while it is correctly connected with intune and avaliable

example and most of my quries is like this

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,640 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
172 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint: A Microsoft unified security platform for preventative protection, postbreach detection, and automated investigation and response. Previously known as Microsoft Defender Advanced Threat Protection.Training: Instruction to develop new skills.
27 questions
asked 2024-06-25T23:26:27.2666667+00:00
Abdelgalil, Mohamed 0 Reputation points
commented 2024-06-27T14:09:33.48+00:00
Akshay-MSFT 17,486 Reputation points Microsoft Employee
1 answer

MS Defender agent uninstalling - Complete #help

Hello Community I have a VM where a 3rd party AV is installed , previously we were using MS defender endpoint but it was giving pain for redhat machines. Problem : I have a win10 VM where i have uninstalled the MDE agent from extension . but…

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
2,957 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2022-08-01T09:38:33.96+00:00
Mohammed Altamash Khan 2,086 Reputation points
commented 2024-06-27T13:15:55.6166667+00:00
Dan Beeney 0 Reputation points
1 answer

how can i use o365 Defender to push certain windows hostbased firewall rule on windows servers?

hi how can i use o365 Defender to push certain windows host based firewall rule on a windows servers hosted on azure or managed with Azure Arc? and if defender cannot do it , what are the alternative tools ?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-24T11:25:44.58+00:00
adm-d.al-helo 0 Reputation points
answered 2024-06-26T06:32:01.27+00:00
Akshay-MSFT 17,486 Reputation points Microsoft Employee
0 answers

SQL Server: Defender for SQL Server Configuration Issues – Status Not Displayed

I have an SQL Server, and I attempted to configure Defender for SQL Server. However, even after a day, it has not been configured properly, and the menu showing the "Protected" or "Not Protected" status does not appear as expected.…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-12T00:16:07.6366667+00:00
mara7 161 Reputation points
commented 2024-06-26T06:27:37.3066667+00:00
Givary-MSFT 30,071 Reputation points Microsoft Employee
1 answer

Endpoint defender

I I have intune license why i cant unable it in order to push the devices on board?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
370 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,640 questions
asked 2024-06-22T03:10:52.7033333+00:00
question anyone 0 Reputation points
edited the question 2024-06-26T03:59:13.3066667+00:00
VarunTha 5,040 Reputation points Microsoft Vendor
1 answer One of the answers was accepted by the question author.

How rollback Microsoft defender plan settings?

Hi, I just accidentally click the 'Upgrade' button and enabled Microsoft defender trail plan for 4 subscriptions while I was logining Azure SQL databases. Can you tell me how can I rollback that? Because need approval before enable that. Thanks. Best…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2023-12-13T00:14:41.2333333+00:00
Bo Xiao 61 Reputation points
commented 2024-06-25T15:25:21.84+00:00
Ilya Ochnev 0 Reputation points
1 answer

Security Center Remediate security configurations-Ensure 'Replace a process level token' is set to 'LOCAL SERVICE, NETWORK SERVICE'

Can some help me remediate this security center "Ensure 'Replace a process level token' is set to 'LOCAL SERVICE, NETWORK SERVICE'" I have web server (IIS) installed in my VM , The recommended state for this setting is: LOCAL SERVICE,…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2021-06-24T11:17:46.59+00:00
jagadish karem 1 Reputation point
commented 2024-06-25T04:32:38.1+00:00
Pepe O 0 Reputation points
2 answers

Issue with Defender Recommendations - Linux virtual machines should enable Azure Disk Encryption or EncryptionAtHost.

HI i have 3 virtual machines in azure i have enabled one week back Encryption at host for all machines - Now am seeing - Recommendations - Virtual machines and virtual machine scale sets should have encryption at host enabled is now in healthy…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,447 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-15T08:00:35.97+00:00
Kuldeep Singh(OT) 60 Reputation points
commented 2024-06-25T04:29:56.4233333+00:00
Kuldeep Singh(OT) 60 Reputation points
1 answer

Ensuring User Reauthentication and Consolidating Functions with XDR

Issue Description: The CloudApp portal, which facilitated user reauthentication, has been removed. As a result, we need to find a new method to prompt users to sign in again for security purposes. Objective: Our goal is to implement a seamless…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-24T05:24:59.0966667+00:00
VAVA Jeffrey [EPI-Cyber Security] 0 Reputation points
answered 2024-06-24T23:05:43.4933333+00:00
Marilee Turscak-MSFT 35,901 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Connect Defender for Servers to Log Analytics Workspace

We've enabled Defender for Servers and I'd like to confirm how to connect it to our Log Analytics Workspace. The Microsoft Defender XDR connector is already installed, but do we need to install the Microsoft Defender for Cloud connector for this? The…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-18T21:30:59.22+00:00
Richard Long 321 Reputation points
accepted 2024-06-21T18:31:00.3233333+00:00
Richard Long 321 Reputation points
2 answers

How to fix error or warning at this in microsoft defender portal

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2024-06-20T23:09:24.7966667+00:00
question anyone 0 Reputation points
answered 2024-06-21T09:29:20.8066667+00:00
Akshay-MSFT 17,486 Reputation points Microsoft Employee