You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/plan-defender-for-servers-agents.md
+1Lines changed: 1 addition & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -42,6 +42,7 @@ You can onboard the Azure Arc agent to your AWS or GCP servers automatically wit
42
42
To plan for Azure Arc deployment:
43
43
44
44
1. Review the Azure Arc [planning recommendations](../azure-arc/servers/plan-at-scale-deployment.md) and [deployment prerequisites](../azure-arc/servers/prerequisites.md).
45
+
1. Open the [network ports for Azure Arc](support-matrix-defender-for-servers.md#network-requirements) in your firewall.
45
46
1. Azure Arc installs the Connected Machine agent to connect to and manage machines that are hosted outside of Azure. Review the following information:
46
47
47
48
- The [agent components and data collected from machines](../azure-arc/servers/agent-overview.md#agent-resources).
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/support-matrix-defender-for-servers.md
+24-9Lines changed: 24 additions & 9 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -4,20 +4,40 @@ description: Review support requirements for the Defender for Servers plan in Mi
4
4
ms.topic: limits-and-quotas
5
5
author: dcurwin
6
6
ms.author: dacurwin
7
-
ms.date: 01/01/2023
7
+
ms.date: 06/11/2023
8
8
---
9
9
10
10
# Defender for Servers support
11
11
12
12
This article summarizes support information for the Defender for Servers plan in Microsoft Defender for Cloud.
13
13
14
-
## Azure cloud support
14
+
## Network requirements
15
+
16
+
Validate the following endpoints are configured for outbound access so that Azure Arc extension can connect to Microsoft Defender for Cloud to send security data and events:
17
+
18
+
- For Defender for Server multicloud deployments, make sure that the [addresses and ports required by Azure Arc](../azure-arc/data/connectivity.md#details-on-internet-addresses-ports-encryption-and-proxy-server-support) are open.
19
+
20
+
- For deployments with GCP connectors, open port 443 to these URLs:
The following table provides a matrix of supported endpoint protection solutions. The table indicates whether you can use Defender for Cloud to install each solution for you.
@@ -125,12 +142,10 @@ The following table provides a matrix of supported endpoint protection solutions
125
142
| Microsoft Defender for Endpoint Unified Solution<sup>[2](#footnote2)</sup> | Windows Server 2012 R2 and Windows 2016 | Via extension |
126
143
| Sophos V9+ | Linux (GA) | No |
127
144
128
-
129
145
<sup><aname="footnote1"></a>1</sup> It's not enough to have Microsoft Defender for Endpoint on the Linux machine: the machine will only appear as healthy if the always-on scanning feature (also known as real-time protection (RTP)) is active. By default, the RTP feature is **disabled** to avoid clashes with other AV software.
130
146
131
147
<sup><aname="footnote2"></a>2</sup> With the MDE unified solution on Server 2012 R2, it automatically installs Microsoft Defender Antivirus in Active mode. For Windows Server 2016, Microsoft Defender Antivirus is built into the OS.
132
148
133
149
## Next steps
134
150
135
151
Start planning your [Defender for Servers deployment](plan-defender-for-servers.md).
0 commit comments