Skip to content

Commit 3397d27

Browse files
authored
Merge pull request #204223 from batamig/doc-bash-july22
Doc bash july22 - Batami
2 parents 590f732 + e1daba7 commit 3397d27

File tree

9 files changed

+261
-195
lines changed

9 files changed

+261
-195
lines changed

articles/defender-for-iot/index.yml

Lines changed: 41 additions & 34 deletions
Original file line numberDiff line numberDiff line change
@@ -1,74 +1,81 @@
11
### YamlMime:Hub
22

3-
title: Microsoft Defender for IoT
4-
summary: Microsoft Defender for IoT provides comprehensive threat detection for IoT/OT environments, with multiple deployment options including fully on-premises, cloud-connected, or hybrid.
5-
brand: azure ## Used for color theming of icons and hero area
3+
title: Microsoft Defender for IoT
4+
summary: Microsoft Defender for IoT provides comprehensive threat detection for IoT/OT environments, with multiple deployment options that include cloud, on-premises, or hybrid.
65

76
metadata:
87
title: Microsoft Defender for IoT documentation
9-
description: Learn how Microsoft Defender for IoT, an Azure based cloud security service provides comprehensive IoT device threat protection.
8+
description: Learn how Microsoft Defender for IoT, an Azure-based, cloud security service provides comprehensive IoT device threat protection.
109
services: service
1110
ms.service: defender-for-iot
1211
ms.topic: landing-page
13-
ms.collection: M365-security-compliance
1412
author: batamig
1513
manager: raynew
16-
ms.date: 11/09/2021
14+
ms.date: 07/10/2022
1715

1816
highlightedContent:
1917
# itemType: architecture | concept | deploy | download | get-started | how-to-guide | learn | overview | quickstart | reference | tutorial | whats-new
2018
items:
21-
- title: What is Microsoft Defender for IoT for end-user organizations?
19+
- title: Microsoft Defender for IoT support for end-user organizations
2220
itemType: overview # controls the icon image and super-title text
2321
url: organizations/overview.md
2422
- title: What's new for end-user organizations?
2523
itemType: whats-new
2624
url: organizations/release-notes.md
27-
- title: Agentless solution architecture for end-user organizations
28-
itemType: architecture
25+
- title: Agentless system architecture
26+
itemType: architecture
2927
url: organizations/architecture.md
30-
- title: What is Microsoft Defender for IoT for device builders?
28+
- title: Microsoft Defender for IoT support for device builders
3129
itemType: overview
3230
url: device-builders/overview.md
3331
- title: What's new for device builders?
3432
itemType: whats-new
3533
url: device-builders/release-notes.md
36-
- title: Agent-based solution architecture for device builders
37-
itemType: architecture
38-
url: device-builders/architecture-agent-based.md
34+
- title: Configure Microsoft Defender for IoT on your Azure IoT Hub
35+
itemType: quickstart
36+
url: device-builders/quickstart-onboard-iot-hub.md
3937

4038
conceptualContent:
4139
# itemType: architecture | concept | deploy | download | get-started | how-to-guide | learn | overview | quickstart | reference | tutorial | whats-new
4240
items:
43-
- title: Microsoft Defender for IoT for end-user organizations
41+
- title: Microsoft Defender for IoT documentation for end-user organizations
4442
links:
4543
- url: organizations/getting-started.md
4644
itemType: quickstart
47-
text: Get started with Defender for IoT for end-user organizations
48-
- url: organizations/concept-key-concepts.md
49-
itemType: quickstart
50-
text: Key concepts
51-
- url: organizations/how-to-set-up-your-network.md
52-
itemType: how-to-guide
53-
text: About Microsoft Defender for IoT network setup
45+
text: Get started with Defender for IoT
46+
- url: organizations/tutorial-onboarding.md
47+
itemType: tutorial
48+
text: Get started with for OT security monitoring
49+
- url: organizations/tutorial-getting-started-eiot-sensor.md
50+
itemType: tutorial
51+
text: Get started with Enterprise IoT security monitoring
52+
- url: organizations/best-practices/understand-network-architecture.md
53+
itemType: concept
54+
text: Understand your OT network architecture
55+
- url: organizations/concept-sentinel-integration.md
56+
itemType: concept
57+
text: OT threat monitoring in enterprise SOCs
5458
footerLink:
5559
url: organizations/index.yml
5660
text: See more
5761

58-
- title: Microsoft Defender for IoT for device builders
62+
- title: Microsoft Defender for IoT documentation for device builders
5963
links:
60-
- url: device-builders/quickstart-onboard-iot-hub.md
61-
itemType: quickstart
62-
text: Onboard Defender for IoT to an agent-based solution
63-
- url: device-builders/quickstart-configure-your-solution.md
64-
itemType: quickstart
65-
text: Configure your Microsoft Defender for IoT solution
66-
- url: device-builders/concept-recommendations.md
67-
itemType: concept
68-
text: Security recommendations for IoT Hub
69-
- url: device-builders/how-to-configure-agent-based-solution.md
70-
itemType: how-to-guide
71-
text: Configure Microsoft Defender for IoT
64+
- url: device-builders/tutorial-configure-your-solution.md
65+
itemType: tutorial
66+
text: Add a resource group to your IoT solution
67+
- url: device-builders/tutorial-create-micro-agent-module-twin.md
68+
itemType: tutorial
69+
text: Create a DefenderIotMicroAgent module twin
70+
- url: device-builders/tutorial-standalone-agent-binary-installation.md
71+
itemType: tutorial
72+
text: Install the Defender for IoT micro agent
73+
- url: device-builders/tutorial-investigate-security-recommendations.md
74+
itemType: tutorial
75+
text: Investigate security recommendations
76+
- url: device-builders/tutorial-investigate-security-alerts.md
77+
itemType: tutorial
78+
text: Investigate security alerts
7279
footerLink:
7380
url: device-builders/index.yml
7481
text: See more

articles/defender-for-iot/organizations/TOC.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -206,6 +206,8 @@
206206
items:
207207
- name: OT monitoring appliances
208208
items:
209+
- name: Overview
210+
href: appliance-catalog/appliance-catalog-overview.md
209211
- name: Corporate environments
210212
items:
211213
- name: HPE ProLiant DL360
Lines changed: 40 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,40 @@
1+
---
2+
title: OT monitoring appliance reference overview - Microsoft Defender for IoT
3+
description: Provides an overview of all appliances available for use with Microsoft Defender for IoT OT sensors and on-premises management consoles.
4+
ms.date: 07/10/2022
5+
ms.topic: conceptual
6+
---
7+
8+
# OT monitoring appliance reference
9+
10+
This article provides an overview of the OT monitoring appliances supported with Microsoft Defender for IoT.
11+
12+
Each article provides details about the appliance and any extra software installation procedures required. For more information, see [Install OT system software](../how-to-install-software.md) and [Update Defender for IoT OT monitoring software](../update-ot-software.md).
13+
14+
## Corporate environments
15+
16+
The following OT monitoring appliances are available for corporate deployments:
17+
18+
- [HPE ProLiant DL360](hpe-proliant-dl360.md)
19+
20+
## Large enterprises
21+
22+
The following OT monitoring appliances are available for large enterprise deployments:
23+
24+
- [HPE ProLiant DL20/DL20 Plus (4SFF)](hpe-proliant-dl20-plus-enterprise.md)
25+
26+
## Production line
27+
28+
The following OT monitoring appliances are available for production line deployments:
29+
30+
- [HPE ProLiant DL20/DL20 Plus (NHP 2LFF) for SMB deployments](hpe-proliant-dl20-plus-smb.md)
31+
- [Dell Edge 5200 (Rugged)](dell-edge-5200.md)
32+
- [YS-techsystems YS-FIT2 (Rugged)](ys-techsystems-ys-fit2.md)
33+
34+
## Next steps
35+
36+
For more information, see:
37+
38+
- [Which appliances do I need?](../ot-appliance-sizing.md)
39+
- [Pre-configured physical appliances for OT monitoring](../ot-pre-configured-appliances.md)
40+
- [OT monitoring with virtual appliances](../ot-virtual-appliances.md)

articles/defender-for-iot/organizations/how-to-install-software.md

Lines changed: 30 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -1,14 +1,13 @@
11
---
2-
title: Install OT system software - Microsoft Defender for IoT
3-
description: Learn how to install a sensor and the on-premises management console for Microsoft Defender for IoT.
4-
ms.date: 01/06/2022
2+
title: Install OT network monitoring software - Microsoft Defender for IoT
3+
description: Learn how to install agentless monitoring software for an OT sensor and an on-premises management console for Microsoft Defender for IoT. Use this article if you're reinstalling software on a preconfigured appliance, or if you've chosen to install software on your own appliances.
4+
ms.date: 07/11/2022
55
ms.topic: how-to
66
---
77

8-
# Install OT system software
9-
10-
This article describes how to install software for OT sensors and on-premises management consoles. You might need the procedures in this article if you're reinstalling software on a preconfigured appliance, or if you've chosen to install software on your own appliances.
8+
# Install OT agentless monitoring software
119

10+
This article describes how to install agentless monitoring software for OT sensors and on-premises management consoles. You might need the procedures in this article if you're reinstalling software on a preconfigured appliance, or if you've chosen to install software on your own appliances.
1211

1312
## Pre-installation configuration
1413

@@ -26,7 +25,7 @@ For more information, see:
2625

2726
Make sure that you've downloaded the relevant software file for the sensor or on-premises management console.
2827

29-
You can obtain the latest versions of our OT sensor and on-premises management console software from the Azure portal, on the Defender for IoT > **Getting started** page. Select the **Sensor**, **On-premises management console**, or **Updates** tab and locate the software you need.
28+
You can obtain the latest versions of our OT sensor and on-premises management console software from the Azure portal. On the Defender for IoT > **Getting started** page, select the **Sensor**, **On-premises management console**, or **Updates** tab and locate the software you need.
3029

3130
Mount the ISO file using one of the following options:
3231

@@ -59,33 +58,33 @@ This procedure describes how to install OT sensor software on a physical or virt
5958

6059
1. The sensor will reboot, and the **Package configuration** screen will appear. Press the up or down arrows to navigate, and the SPACE bar to select an option. Press ENTER to advance to the next screen.
6160

62-
1. Select the monitor interface and press the **ENTER** key.
61+
1. Select the monitor interface. For example:
6362

6463
:::image type="content" source="media/tutorial-install-components/monitor-interface.png" alt-text="Screenshot of the select monitor interface screen.":::
6564

66-
1. If one of the monitoring ports is for ERSPAN, select it, and press the **ENTER** key.
65+
1. If one of the monitoring ports is for ERSPAN, select it. For example:
6766

6867
:::image type="content" source="media/tutorial-install-components/erspan-monitor.png" alt-text="Screenshot of the select erspan monitor screen.":::
6968

70-
1. Select the interface to be used as the management interface, and press the **ENTER** key.
69+
1. Select the interface to be used as the management interface. For example:
7170

7271
:::image type="content" source="media/tutorial-install-components/management-interface.png" alt-text="Screenshot of the management interface select screen.":::
7372

74-
1. Enter the sensor's IP address, and press the **ENTER** key.
73+
1. Enter the sensor's IP address. For example:
7574

7675
:::image type="content" source="media/tutorial-install-components/sensor-ip-address.png" alt-text="Screenshot of the sensor IP address screen.":::
7776

78-
1. Enter the path of the mounted logs folder. We recommend using the default path, and press the **ENTER** key.
77+
1. Enter the path of the mounted logs folder. We recommend using the default path. For example:
7978

8079
:::image type="content" source="media/tutorial-install-components/mounted-backups-path.png" alt-text="Screenshot of the mounted backup path screen.":::
8180

82-
1. Enter the Subnet Mask IP address, and press the **ENTER** key.
81+
1. Enter the Subnet Mask IP address. For example:
8382

84-
1. Enter the default gateway IP address, and press the **ENTER** key.
83+
1. Enter the default gateway IP address.
8584

86-
1. Enter the DNS Server IP address, and press the **ENTER** key.
85+
1. Enter the DNS Server IP address.
8786

88-
1. Enter the sensor hostname and press the **ENTER** key.
87+
1. Enter the sensor hostname. For example:
8988

9089
:::image type="content" source="media/tutorial-install-components/sensor-hostname.png" alt-text="Screenshot of the screen where you enter a hostname for your sensor.":::
9190

@@ -150,9 +149,9 @@ For information on how to find the physical port on your appliance, see [Find yo
150149

151150
### Add a secondary NIC (optional)
152151

153-
You can enhance security to your on-premises management console by adding a secondary NIC dedicated for attached sensors within an IP address range. By adding a secondary NIC, the first will be dedicated for end-users, and the secondary will support the configuration of a gateway for routed networks.
152+
You can enhance security to your on-premises management console by adding a secondary NIC dedicated for attached sensors within an IP address range. When you use a secondary NIC, the first is dedicated for end-users, and the secondary supports the configuration of a gateway for routed networks.
154153

155-
:::image type="content" source="media/tutorial-install-components/secondary-nic.png" alt-text="The overall architecture of the secondary NIC.":::
154+
:::image type="content" source="media/tutorial-install-components/secondary-nic.png" alt-text="Diagram that shows the overall architecture of the secondary NIC." border="false":::
156155

157156
Both NICs will support the user interface (UI). If you choose not to deploy a secondary NIC, all of the features will be available through the primary NIC.
158157

@@ -199,7 +198,7 @@ This command will cause the light on the port to flash for the specified time pe
199198
200199
After you've finished installing OT monitoring software on your appliance, test your system to make sure that processes are running correctly. The same validation process applies to all appliance types.
201200

202-
System health validations are supported via the sensor or on-premises management console UI or CLI, and is available for both the **Support** and **CyberX** users.
201+
System health validations are supported via the sensor or on-premises management console UI or CLI, and are available for both the **Support** and **CyberX** users.
203202

204203
After installing OT monitoring software, make sure to run the following tests:
205204

@@ -211,13 +210,21 @@ After installing OT monitoring software, make sure to run the following tests:
211210

212211
For more information, see [Check system health](how-to-troubleshoot-the-sensor-and-on-premises-management-console.md#check-system-health) in our sensor and on-premises management console troubleshooting article.
213212

214-
## Access sensors from the on-premises management console
213+
## Configure tunneling access for sensors through the on-premises management console
214+
215+
Enhance system security by preventing direct user access to the sensor.
216+
217+
Instead of direct access, use proxy tunneling to let users access the sensor from the on-premises management console with a single firewall rule. This technique narrows the possibility of unauthorized access to the network environment beyond the sensor. The user's experience when signing in to the sensor remains the same.
218+
219+
When tunneling access is configured, users use the following URL syntax to access their sensor consoles: `https://<on-premises management console address>/<sensor address>/<page URL>`
220+
221+
For example, the following image shows a sample architecture where users access the sensor consoles via the on-premises management console.
215222
216-
You can enhance system security by preventing direct user access to the sensor. Instead, use proxy tunneling to let users access the sensor from the on-premises management console with a single firewall rule. This technique narrows the possibility of unauthorized access to the network environment beyond the sensor. The user's experience when signing in to the sensor remains the same.
223+
:::image type="content" source="media/tutorial-install-components/sensor-system-graph.png" alt-text="Screenshot that shows access to the sensor." border="false":::
217224
218-
:::image type="content" source="media/tutorial-install-components/sensor-system-graph.png" alt-text="Screenshot that shows access to the sensor.":::
225+
The interface between the IT firewall, on-premises management console, and the OT firewall is done using a reverse proxy with URL rewrites. The interface between the OT firewall and the sensors is done using reverse SSH tunnels.
219226
220-
**To enable tunneling**:
227+
**To enable tunneling access for sensors**:
221228
222229
1. Sign in to the on-premises management console's CLI with the **CyberX** or the **Support** user credentials.
223230

0 commit comments

Comments
 (0)