1,567 questions with Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud tags

Sort by: Updated
1 answer

Random Azure Defender ON/OFF value on Security Center Inventory screen

We have enabled Azure Defender for one of our SQL Servers and couple days later, when inspecting Security Center Inventory list, we noticed that all of our resources show up with Defender enabled. Launching into investigation of how it happened, we…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-01-19T03:47:13.713+00:00
Yana Shumilova 1 Reputation point
answered 2021-06-11T10:22:26.49+00:00
tomerr 11 Reputation points Microsoft Employee
0 answers

"dangling DNS entries" on Azure Front Door and CDN.

Does ASC covers below alert on Azure Front Door and CDN. "dangling DNS entries"

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-04-07T13:25:19.207+00:00
Kumar K S, Vinay 1 Reputation point
commented 2021-06-10T15:34:18.877+00:00
Shashi Shailaj 7,631 Reputation points Microsoft Employee Moderator
1 answer One of the answers was accepted by the question author.

Threat Modeling Tool - Version control of my own template

Hi, I have created my own template with TMT-2016, and have created some models with that template. And I find that if I copy these models' elements to a new TMT-2018 model. An error message appears like " You have the threat model based upon…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-06-03T15:23:29.447+00:00
Fox AAA 21 Reputation points
commented 2021-06-10T06:33:31.597+00:00
Fox AAA 21 Reputation points
1 answer One of the answers was accepted by the question author.

Approx cost for implementing each Azure Security Center recommendation

Is there any way to find approx cost for implementing each Azure Security Center recommendation.

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-06-08T18:21:40.813+00:00
DiptiRanjan Swain 216 Reputation points
accepted 2021-06-09T17:47:37.54+00:00
DiptiRanjan Swain 216 Reputation points
1 answer One of the answers was accepted by the question author.

Azure Security Recommendation - ADS pricing?

I love the Azure ecosystem, generally, it is very easy to understand pricing and all, but I came across this section where things get a bit hazy, 15USD per server feels like it is only 2/3 of what is required. I have the price I have for what…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-06-07T07:54:17.82+00:00
Heinrich Ludike 121 Reputation points
commented 2021-06-08T08:07:52.567+00:00
Heinrich Ludike 121 Reputation points
1 answer One of the answers was accepted by the question author.

Error when deploying Defender for Servers on an AWS EC2 Instance running Linux

HI, Is anyone familiar with the way to resolve this when running Defender for Servers - deployed on an AWS EC2 Instance with Linux OS. We are getting the following error: Microsoft Root Certificate Authority 2011 certificate is not a trusted root…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-04-15T10:53:19.15+00:00
PeterMeagher 31 Reputation points
commented 2021-06-07T13:47:56.68+00:00
Shashi Shailaj 7,631 Reputation points Microsoft Employee Moderator
1 answer

Data Privacy in Azure Cloud while Data Storage & Model Training

I am working as a Data Scientist at Rxlogix & like deploy Azure Custom Language Translator for our Clients. But there are few Questions/Concerns on which Client wants to get clarification. 1) Data Access while stored in Active Directory Concern…

Azure AI Translator
Azure AI Translator
An Azure service to easily conduct machine translation with a simple REST API call.
492 questions
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-06-01T12:20:07.627+00:00
Yatin Bhatia 1 Reputation point
answered 2021-06-01T20:02:37.38+00:00
GiftA-MSFT 11,176 Reputation points
1 answer

How to use Defender Endpoint to find versions of SSL and TLS on the network

I'd like to use Defender Endpoint to identify all open SSL and TLS ports, and the versions of SSL and TLS on them, on the network covered by Defender Endpoint. Can that be done with a Kusto query? If so, what is the query? I've been looking in the query…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-27T16:19:25.51+00:00
PCVan 1 Reputation point
answered 2021-06-01T19:45:55.293+00:00
VipulSparsh-MSFT 16,316 Reputation points Microsoft Employee Moderator
3 answers One of the answers was accepted by the question author.

Ingest keyvault ,application logs

We are planning to ingest azure Keyvault and application logs to Sumo logic .Can you Please specify what type of logs we will get from Kayvault and application logs ? what types of use cases we can implement to detect suspicious activities. Please help

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,456 questions
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Azure App Service
Azure App Service
Azure App Service is a service used to create and deploy scalable, mission-critical web apps.
9,009 questions
Microsoft Security | Microsoft Sentinel
asked 2021-05-31T02:03:12.407+00:00
Ponugoti Narendra 41 Reputation points
answered 2021-05-31T13:13:29.94+00:00
VipulSparsh-MSFT 16,316 Reputation points Microsoft Employee Moderator
2 answers

Best Practice for Remote Desktop Access of Windows 10 Virtual Machine

Dear Experts, I want to use a Win10 VM on Azure as virtual desktop. For RDP, I will have to open port 3389. I want to know what are best practices for securely using RDP? I saw on Azure that VPN is an option. If I connect from a regular laptop/desktop…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
9,112 questions
Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,808 questions
Windows for business | Windows Client for IT Pros | Devices and deployment | Configure application groups
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-30T18:56:12.693+00:00
TechGuy_MS1 61 Reputation points
answered 2021-05-31T05:58:45.393+00:00
Anonymous
0 answers

Azure Security Center Qualys Vulnerability Scan Stale Recommendations

It seems there are stale recommendations in my security center remediation recommendations. I can't seem to find a manual refresh. Looking in the azure acr, the manifests in question no longer exist. Is there any way we can somehow trigger a…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-27T13:28:01.053+00:00
HarriK 1 Reputation point
commented 2021-05-27T16:42:56.133+00:00
HarriK 1 Reputation point
0 answers

MSDLP - Blocking .PST .OST files

Hi , In my organization we were previously using a DLP solution where we mention the "Custom file signature" for outlook files like .pst & .ost files and prevent them sharing outside network. this was working even though if users change…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-26T04:50:01.47+00:00
SathishKumar Venugopal 21 Reputation points
1 answer

Microsoft Defender ATP for Linux failed to update definitions with server connected through static proxy

My organization is currently testing Microsoft Defender ATP for Linux on a Redhat 7.9 server through a static proxy, mdatp installed successfully and is onboarding. The problem I met was it couldn't update the definitions, using both automatic update and…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-21T07:01:27.867+00:00
Vu Nguyen 1 Reputation point
answered 2021-05-25T08:01:18.72+00:00
VipulSparsh-MSFT 16,316 Reputation points Microsoft Employee Moderator
1 answer One of the answers was accepted by the question author.

Ingesting Audit and security logs from Azure security center to Sumo logic

we are in azure platform monitoring cloud assets through azure security center. We are planning to ingest some important log sources from azure to Sumo logic .I am searching on some important audit and security logs from azure. If any one have any…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Microsoft Sentinel
asked 2021-05-23T16:56:45.007+00:00
Ponugoti Narendra 41 Reputation points
accepted 2021-05-24T17:07:21.447+00:00
Ponugoti Narendra 41 Reputation points
1 answer

Azure Microsoft Malware setting after installation

Hi, I have 2 virtual machines in Azure. VM01 (Windows server 2019 datacenter) and VM02 (Windows server 2019 datacenter) VM01 has extension of Microsoft Malware. VM02 does not has Microsoft Malware extension. I did rdp for both VMs and went to…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-22T21:19:06.613+00:00
Hassan Bin Nasir Dar 1 Reputation point
answered 2021-05-24T09:56:31.01+00:00
VipulSparsh-MSFT 16,316 Reputation points Microsoft Employee Moderator
3 answers

How to get Azure Security center recommandations into Sentinel?

In my organization we have Azure security center and Azure Sentinel in same Workspace and they are connected. But need to know how we can list/query all the recommendations of Security center in sentinel.

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Sentinel
asked 2021-05-03T04:52:11.987+00:00
Mohammad Hasan 1 Reputation point
answered 2021-05-20T22:56:21.45+00:00
Saurabh Sharma 23,851 Reputation points Microsoft Employee Moderator
1 answer

How can we get disable policies count in Azure Security Center (ASC) Default from Rest API ?

I need to find out how many disable policies in ASC default using Rest API. PFA for Azure Console Screenshot for required data. Here my expected was disable policies are 7 in my ASC Default from my subscription.

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-19T17:25:30.803+00:00
Ajith Kumar 1 Reputation point
answered 2021-05-20T19:50:32.69+00:00
Saurabh Sharma 23,851 Reputation points Microsoft Employee Moderator
0 answers

Can't update security or use authenticator app

I have a premium custom email through Outlook.com via my godaddy domain. I have been using that as my Microsoft 365 account primary email. Recently, the Microsoft site made me set up the authenticator app. In doing so, it somehow created an…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Authenticator
asked 2021-05-20T15:04:46.64+00:00
KiminATL 1 Reputation point
1 answer

1. Can you trust the Azure Secure Score? Why? At what does it looked at? 2.Is the Azure Secure Score competitive to other scores?

Can you trust the Azure Secure Score? Why? At what does it looked at? 2.Is the Azure Secure Score competitive to other scores?

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-18T20:43:03.99+00:00
Abdullah Al Masud 1 Reputation point
answered 2021-05-20T13:40:27.22+00:00
VipulSparsh-MSFT 16,316 Reputation points Microsoft Employee Moderator
2 answers

Security Center MFA Policy Users report

Hello, How do i get the users that for example are not compliant with "MFA should be enabled on accounts with owner permissions on your subscription" Using the Security Center you get the Subscription and when you click on them you get the…

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
asked 2021-05-17T06:25:14.907+00:00
Adrian Chirtoc 126 Reputation points
commented 2021-05-20T05:45:47.6+00:00
VipulSparsh-MSFT 16,316 Reputation points Microsoft Employee Moderator