ATP / Azure Security Center

Rain 1 Reputation point
2022-01-26T20:19:34.137+00:00

I'm trying to segment a resource group to be exempt from Azure Security Center / ATP while also have another that does have it so I can have proper testing. I found ways to exempt some resources individually from individual policies is there a better way to do this? Are there was to install / uninstall these agents individually instead of rolling it out all at once on the network?

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Givary-MSFT 35,621 Reputation points Microsoft Employee Moderator
    2022-01-27T06:15:09.31+00:00

    @Rain

    Thank you for reaching out to us.

    I understand you want to test the capabilities of Azure Security Center. Azure Security Center deployment is based on the subscription not on Resource groups, however we can control the agent installation on the Azure VM's by navigating to this section and install the agent manually on the servers.

    168913-image.png

    Reference: https://learn.microsoft.com/en-us/azure/defender-for-cloud/enable-data-collection?tabs=autoprovision-feature

    Note: Azure Security Center and Azure Defender are now called Microsoft Defender for Cloud.

    If you have any other questions, please let me know.

    Thank you for your time.

    ----------

    Please remember to "Accept Answer" if answer/reply helped, so that others in the community facing similar issues can easily find the solution.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.