You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/includes/defender-for-containers-enable-plan-eks.md
+6-6Lines changed: 6 additions & 6 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -6,10 +6,10 @@ ms.date: 12/11/2023
6
6
ms.author: dacurwin
7
7
author: dcurwin
8
8
---
9
-
## Protect Amazon Elastic Kubernetes Service clusters
9
+
## Enable the plan
10
10
11
11
> [!IMPORTANT]
12
-
> If you haven't already connected an AWS account, [connect your AWS accounts to Microsoft Defender for Cloud](../quickstart-onboard-aws.md).
12
+
> If you haven't already connected an AWS account, [connect your AWS accounts to Microsoft Defender for Cloud](../tutorial-enable-container-aws.md).
13
13
14
14
To protect your EKS clusters, enable the Containers plan on the relevant account connector:
15
15
@@ -18,21 +18,21 @@ To protect your EKS clusters, enable the Containers plan on the relevant account
18
18
19
19
:::image type="content" source="../media/defender-for-kubernetes-intro/select-aws-connector.png" alt-text="Screenshot of Defender for Cloud's environment settings page showing an AWS connector.":::
20
20
21
-
1.Set the toggle for the **Containers** plan to **On**.
21
+
1.Verify that the toggle for the **Containers** plan is set to **On**.
22
22
23
23
:::image type="content" source="../media/defender-for-kubernetes-intro/enable-containers-plan-on-aws-connector.png" alt-text="Screenshot of enabling Defender for Containers for an AWS connector.":::
24
24
25
25
1. To change optional configurations for the plan, select **Settings**.
26
26
27
27
:::image type="content" source="../media/tutorial-enable-containers-aws/containers-settings.png" alt-text="Screenshot of Defender for Cloud's environment settings page showing the settings for the Containers plan." lightbox="../media/tutorial-enable-containers-aws/containers-settings.png":::
28
28
29
-
- To send Kubernetes audit logs to Microsoft Defender, toggle the setting to **On.** To change the retention period for your audit logs, enter the required time frame.
29
+
-Defender for Containers requires control plane audit logs to provide [runtime threat protection](../defender-for-containers-introduction.md#run-time-protection-for-kubernetes-nodes-and-clusters). To send Kubernetes audit logs to Microsoft Defender, toggle the setting to **On.** To change the retention period for your audit logs, enter the required time frame.
30
30
31
31
> [!NOTE]
32
32
> If you disable this configuration, then the `Threat detection (control plane)` feature will be disabled. Learn more about [features availability](../supported-machines-endpoint-solutions-clouds-containers.md).
33
33
34
-
- To enable the **Agentless discovery for Kubernetes** feature, toggle the setting to **On**.
35
-
- To enable the **Agentless Container Vulnerability Assessment** feature, toggle the setting to **On**.
34
+
-[Agentless discovery for Kubernetes](../defender-for-containers-architecture.md#how-does-agentless-discovery-for-kubernetes-work) provides API-based discovery of your Kubernetes clusters. To enable the **Agentless discovery for Kubernetes** feature, toggle the setting to **On**.
35
+
-The [Agentless Container Vulnerability Assessment](../agentless-vulnerability-assessment-aws.md) provides vulnerability management for images stored in ECR and running images on your EKS clusters. To enable the **Agentless Container Vulnerability Assessment** feature, toggle the setting to **On**.
36
36
37
37
1. Continue through the remaining pages of the connector wizard.
0 commit comments