Skip to content

Commit 5b94e6d

Browse files
authored
Merge pull request #106128 from memildin/asc-melvyn-vmva
Logical reorg of the overview topics
2 parents 4950168 + b1ad55c commit 5b94e6d

File tree

5 files changed

+78
-91
lines changed

5 files changed

+78
-91
lines changed

articles/security-center/TOC.yml

Lines changed: 10 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,16 @@
66
href: security-center-intro.md
77
- name: Supported platforms
88
href: security-center-os-coverage.md
9-
- name: Supported features
10-
href: security-center-services.md
9+
- name: Security Center features
10+
items:
11+
- name: Feature coverage for VMs
12+
href: security-center-services.md
13+
- name: Feature coverage for Azure PaaS resources
14+
href: features-paas.md
15+
- name: Security recommendations
16+
href: recommendations-reference.md
17+
- name: Security alerts and the intent kill chain
18+
href: alerts-reference.md
1119

1220
- name: Quickstarts
1321
expanded: true
Lines changed: 53 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,53 @@
1+
---
2+
title: Azure Security Center features for supported Azure PaaS resources.
3+
description: This page shows the availability of Azure Security Center features for the supported Azure PaaS resources.
4+
services: security-center
5+
documentationcenter: na
6+
author: memildin
7+
manager: rkarlin
8+
ms.assetid: be2ab6d5-72a8-411f-878e-98dac21bc5cb
9+
ms.service: security-center
10+
ms.devlang: na
11+
ms.topic: conceptual
12+
ms.tgt_pltfrm: na
13+
ms.workload: na
14+
ms.date: 03/01/2020
15+
ms.author: memildin
16+
17+
---
18+
# Feature coverage for Azure PaaS services <a name="paas-services"></a>
19+
20+
The table below shows the availability of Azure Security Center features for the supported Azure PaaS resources.
21+
22+
|Service|Recommendations (Free)|Security alerts (Standard)|Vulnerability assessment (Standard)|
23+
|:----|:----:|:----:|:----:|
24+
|Azure App Service|||-|
25+
|Azure Automation account||-|-|
26+
|Azure Batch account||-|-|
27+
|Azure Blob Storage|||-|
28+
|Azure Cache for Redis||-|-|
29+
|Azure Cloud Services||-|-|
30+
|Azure Cognitive Search||-|-|
31+
|Azure Container Registry|-|-||
32+
|Azure Cosmos DB*|-||-|
33+
|Azure Data Lake Analytics||-|-|
34+
|Azure Data Lake Storage||-|-|
35+
|Azure Database for MySQL*|||-|
36+
|Azure Database for PostgreSQL*|||-|
37+
|Azure Event Hubs namespace||-|-|
38+
|Azure Functions app||-|-|
39+
|Azure Key Vault||✔ *|-|
40+
|Azure Kubernetes Service|||-|
41+
|Azure Load Balancer||-|-|
42+
|Azure Logic Apps||-|-|
43+
|Azure SQL Databases||||
44+
|Azure Service Bus namespace||-|-|
45+
|Azure Service Fabric account||-|-|
46+
|Azure Storage accounts||-|-|
47+
|Azure Stream Analytics||-|-|
48+
|Azure Subscription|**||-|
49+
|Azure Virtual Network</br> (incl. subnets, NICs, and network security groups)||-|-|
50+
51+
\* These features are currently supported in preview.
52+
53+
\*\* Azure Active Directory (Azure AD) recommendations are available only for Standard subscriptions.

articles/security-center/security-center-endpoint-protection.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ ms.author: memildin
1818

1919
# Endpoint protection assessment and recommendations in Azure Security Center
2020

21-
Azure Security Center provides health assessments of [supported](security-center-services.md#supported-endpoint-protection-solutions-) versions of Endpoint protection solutions. This article explains the scenarios that lead Security Center to generate the following two recommendations:
21+
Azure Security Center provides health assessments of [supported](security-center-services.md#endpoint-supported) versions of Endpoint protection solutions. This article explains the scenarios that lead Security Center to generate the following two recommendations:
2222

2323
* **Install endpoint protection solutions on your virtual machine**
2424
* **Resolve endpoint protection health issues on your machines**

articles/security-center/security-center-os-coverage.md

Lines changed: 1 addition & 34 deletions
Original file line numberDiff line numberDiff line change
@@ -30,7 +30,6 @@ For an Azure environment activated on an Azure subscription, Azure Security Cent
3030
> [!NOTE]
3131
> To receive the full set of security features, you must have the [Log Analytics Agent](../azure-monitor/platform/agents-overview.md#log-analytics-agent), which is used by Azure Security Center, installed and [properly configured to send data to Azure Security Center](security-center-enable-data-collection.md#manual-agent).
3232
33-
3433
The following sections list the supported server operating systems on which the [Log Analytics Agent](../azure-monitor/platform/agents-overview.md#log-analytics-agent), which is used by Azure Security Center, can run.
3534

3635
### Windows server operating systems <a name="os-windows"></a>
@@ -80,38 +79,6 @@ Virtual machines are also created in a customer subscription as part of some Azu
8079

8180
Virtual machines that run in a cloud service are also supported. Only cloud services web and worker roles that run in production slots are monitored. To learn more about cloud services, see [Overview of Azure Cloud Services](../cloud-services/cloud-services-choose-me.md).
8281

83-
## PaaS Services <a name="paas-services"></a>
84-
85-
The following Azure PaaS resources are supported by Azure Security Center:
86-
87-
* SQL
88-
* PostGreSQL
89-
* MySQL
90-
* CosmosDB
91-
* Storage account
92-
* App service
93-
* Function
94-
* Cloud Service
95-
* VNet
96-
* Subnet
97-
* NIC
98-
* NSG
99-
* Batch account
100-
* Service fabric account
101-
* Automation account
102-
* Load balancer
103-
* Search
104-
* Service bus namespace
105-
* Stream analytics
106-
* Event hub namespace
107-
* Logic apps
108-
* Redis
109-
* Data Lake Analytics
110-
* Data Lake Store
111-
* Key vault
112-
113-
To learn more about the supported features for the above list of PaaS resources, see [PaaS services supported features](security-center-services.md#paas-services).
114-
11582
Protection for Virtual Machines residing in Azure Stack is also supported. For more information about Security Center’s integration with Azure Stack, see [Onboard your Azure Stack virtual machines to Security Center](https://docs.microsoft.com/azure/security-center/quick-onboard-azure-stack).
11683

11784
## Next steps
@@ -120,4 +87,4 @@ Protection for Virtual Machines residing in Azure Stack is also supported. For m
12087
- Learn how [Security Center manages and safeguards data](security-center-data-security.md).
12188
- Learn how to [plan and understand the design considerations to adopt Azure Security Center](security-center-planning-and-operations-guide.md).
12289
- Learn about [features available for the different cloud environments](security-center-services.md).
123-
- Learn more about [threat protection for Windows and Linux machines in Azure Security Center](threat-protection.md#windows-machines).
90+
- Learn more about [threat protection for Windows and Linux machines in Azure Security Center](threat-protection.md#windows-machines).

articles/security-center/security-center-services.md

Lines changed: 13 additions & 54 deletions
Original file line numberDiff line numberDiff line change
@@ -11,27 +11,21 @@ ms.devlang: na
1111
ms.topic: conceptual
1212
ms.tgt_pltfrm: na
1313
ms.workload: na
14-
ms.date: 01/05/2020
14+
ms.date: 03/01/2020
1515
ms.author: memildin
1616
---
17-
# Supported features available in Azure Security Center
1817

19-
> [!NOTE]
20-
>Some features are only available with the Standard tier. If you have not already signed up for Security Center's Standard tier, a free trial period is available. For more information, see the [Security Center pricing page](https://azure.microsoft.com/pricing/details/security-center/).
21-
22-
The following sections show Security Center features that are available for their [supported platforms](security-center-os-coverage.md).
18+
# Feature coverage for machines
2319

24-
* [Virtual machines / servers](#vm-server-features)
25-
* [PaaS services](#paas-services)
20+
The tables below show Azure Security Center features that are available for virtual machines and servers.
2621

22+
## Supported features for virtual machines and servers <a name="vm-server-features"></a>
2723

28-
## Virtual machine / server supported features <a name="vm-server-features"></a>
29-
30-
### [Windows](#tab/features-windows)
24+
### [Windows machines](#tab/features-windows)
3125

3226
|||||||||
3327
|----|:----:|:----:|:----:|:----:|:----:|:----:|:----:|
34-
||**Azure Virtual Machines**|**Azure Virtual Machine Scale Sets**|**Non-Azure Machines**|**Pricing**
28+
|**Feature**|**Azure Virtual Machines**|**Azure Virtual Machine Scale Sets**|**Non-Azure Machines**|**Pricing**
3529
|[Microsoft Defender ATP integration](security-center-wdatp.md)|✔</br>(on supported versions)|✔</br>(on supported versions)||Standard|
3630
|[Virtual Machine Behavioral Analytics (and security alerts)](threat-protection.md)||||Recommendations (Free) </br></br> Security alerts (Standard)|
3731
|[Fileless security alerts](alerts-reference.md#alerts-windows)||||Standard|
@@ -53,11 +47,11 @@ The following sections show Security Center features that are available for thei
5347
|[Network security assessment](security-center-network-recommendations.md)|||-|Free|
5448

5549

56-
### [Linux](#tab/features-linux)
50+
### [Linux machines](#tab/features-linux)
5751

5852
|||||||||
5953
|----|:----:|:----:|:----:|:----:|:----:|:----:|:----:|
60-
||**Azure Virtual Machines**|**Azure Virtual Machine Scale Sets**|**Non-Azure Machines**|**Pricing**
54+
|**Feature**|**Azure Virtual Machines**|**Azure Virtual Machine Scale Sets**|**Non-Azure Machines**|**Pricing**
6155
|[Microsoft Defender ATP integration](security-center-wdatp.md)|-|-|-|Standard|
6256
|[Virtual Machine Behavioral Analytics (and security alerts)](security-center-alerts-iaas.md)|✔</br>(on supported versions)|✔</br>(on supported versions)||Recommendations (Free) </br></br> Security alerts (Standard)|
6357
|[Fileless security alerts](alerts-reference.md#alerts-windows)|-|-|-|Standard|
@@ -80,6 +74,11 @@ The following sections show Security Center features that are available for thei
8074

8175
---
8276

77+
78+
> [!TIP]
79+
>To experiment with features that are only available on the standard pricing tier, free tier users can enroll in a 30-day trial. For more information, see the [pricing page](https://azure.microsoft.com/pricing/details/security-center/).
80+
81+
8382
## Supported endpoint protection solutions <a name="endpoint-supported"></a>
8483

8584
The following table provides a matrix of:
@@ -106,46 +105,6 @@ For information about when recommendations are generated for each of these prote
106105
> - Detection of Trend Micro protection is supported for Deep Security agents. OfficeScan agents are not supported.
107106
108107

109-
## PaaS services supported features <a name="paas-services"> </a>
110-
111-
The following PaaS resources are supported by Azure Security Center:
112-
113-
|Service|Recommendations (Free)|Security alerts (Standard)|Vulnerability assessment (Standard)|
114-
|----|:----:|:----:|:----:|
115-
|SQL Databases||||
116-
|Azure Container Registry|-|-||
117-
|Azure Kubernetes Service|||-|
118-
|Azure Database for PostgreSQL*|||-|
119-
|Azure Database for MySQL*|||-|
120-
|Azure CosmosDB*|-||-|
121-
|Storage Accounts||-|-|
122-
|Blob Storage|||-|
123-
|App Service|||-|
124-
|Function app||-|-|
125-
|Cloud Services||-|-|
126-
|Virtual Network||-|-|
127-
|Subnet||-|-|
128-
|NIC||-|-|
129-
|Network Security Groups||-|-|
130-
|Subscription|**||-|
131-
|Batch account||-|-|
132-
|Service Fabric account||-|-|
133-
|Automation account||-|-|
134-
|Load Balancer||-|-|
135-
|Cognitive Search||-|-|
136-
|Service Bus namespace||-|-|
137-
|Stream analytics||-|-|
138-
|Event hub namespace||-|-|
139-
|Logic apps||-|-|
140-
|Cache for Redis||-|-|
141-
|Data Lake Analytics||-|-|
142-
|Azure Data Lake Storage||-|-|
143-
|Key Vault||✔ *|-|
144-
145-
\* These features are currently supported in preview.
146-
147-
\*\* Azure Active Directory (Azure AD) recommendations are available only for Standard subscriptions.
148-
149108
## Next steps
150109

151110
- Learn how [Security Center collects data and the Log Analytics Agent](security-center-enable-data-collection.md).

0 commit comments

Comments
 (0)