Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
Important
This article applies to commercial clouds. If you're using Government clouds, see the Verify SQL machine protection government article.
After enabling protection for SQL Servers installed on Virtual Machines (VM), on-premises machines, and multicloud resources with the Defender for SQL Servers on Machines plan, verify that your SQL servers are protected as expected.
Verify protection on an entire Azure subscription
Defender for Cloud presents The status of Microsoft SQL Servers on Machines should be protected recommendation. This recommendation allows you to review the protection status of Defender for SQL Servers on Machines. The recommendation identifies all SQL VMs and Azure Arc SQL Server instances within a specified Azure subscription, and presents the protection status of each SQL Server instance.
Sign in to the Azure portal.
Navigate to Microsoft Defender for Cloud > Recommendations.
Search for and select The status of Microsoft SQL Servers on Machines should be protected.
Select View recommendation for all resources.
Review the protection status and the unhealthy reason.
Select the unhealthy resource.
Follow the troubleshooting guide steps starting at Step 3: Identify and resolve protection misconfigurations at the SQL Server instance Level.
Defender for Cloud updates the status of the recommendation every 12 hours. Follow the troubleshooting guide to fix each unprotected SQL server instance.
Verify protection on a single SQL server VM
You can also verify the protection status of a single SQL server VM or Azure Arc SQL Server instance.
Sign in to the Azure portal.
Depending on the resources in your environment, search for and select either:
- SQL virtual machines
or - SQL Server - Azure Arc
- SQL virtual machines
Locate and select the relevant resource.
Under the Security tab, select Defender for Cloud.
Check the Protection status. If the status is Protected, the deployment was successful.
(Optional) Resolve the unprotected server instance status with the troubleshooting SQL Server on Machines guide.
Defender for Cloud updates the status of the recommendation every 12 hours. Follow the troubleshooting guide to fix each unprotected SQL server instance.