Microsoft Defender for Cloud - exclude ARC enabled machines

StephenNijsten-8069 120 Reputation points
2024-03-18T14:02:10.5933333+00:00

Hi all,

I have a mix of normal vms and arc-eneabled machines in my subscription. The arc-enabled machines already have enpoint protection software installed so endpoint protection through MDFC is not needed for these machines.

I was wondering if I can exclude the arc-enabled machines from the inventory so that they are not protected by MDFC?

Kind regards,

Stephen.

Azure Arc
Azure Arc
A Microsoft cloud service that enables deployment of Azure services across hybrid and multicloud environments.
527 questions
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
{count} votes

Accepted answer
  1. Givary-MSFT 35,626 Reputation points Microsoft Employee Moderator
    2024-03-20T10:51:22.27+00:00

    @NIJSTEN Stephen Thank you for reaching out to us, as far i am aware - it's not possible to exclude arc enabled machines from defender for cloud.

    MDFC is a subscription-level service. The only option would be a subscription where MDFC is disabled.

    Azure Arc and Microsoft Defender for Cloud integration - https://learn.microsoft.com/en-us/azure/cloud-adoption-framework/manage/hybrid/server/best-practices/arc-security-center#:~:text=4c3d%2D847f%2D89da613e70a8%27-,Azure%20Arc%20and%20Microsoft%20Defender%20for%20Cloud%20integration,-After%20you%20successfully

    Let me know if you have any further questions, feel free to post back.

    Please remember to "Accept Answer" if answer helped, so that others in the community facing similar issues can easily find the solution.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.