Skip to content

Commit ed518f2

Browse files
authored
Merge pull request #191055 from ElazarK/pricing
added Netta pricing note
2 parents bb6b66a + 79fb5c7 commit ed518f2

File tree

1 file changed

+8
-2
lines changed

1 file changed

+8
-2
lines changed

articles/defender-for-cloud/quickstart-onboard-gcp.md

Lines changed: 8 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
title: Connect your GCP project to Microsoft Defender for Cloud
33
description: Monitoring your GCP resources from Microsoft Defender for Cloud
44
ms.topic: quickstart
5-
ms.date: 02/23/2022
5+
ms.date: 03/09/2022
66
zone_pivot_groups: connect-gcp-accounts
77
ms.custom: mode-other
88
---
@@ -141,7 +141,13 @@ To have full visibility to Microsoft Defender for Servers security content, ensu
141141
- Microsoft Defender for servers enabled on your subscription. Learn how to enable plans in the [Enable enhanced security features](enable-enhanced-security.md) article.
142142

143143
- Azure Arc for servers installed on your VM instances.
144-
- **(Recommended) Auto-provisioning** - Auto-provisioning is enabled by default in the onboarding process and requires owner permissions on the subscription. Arc auto-provisioning process is using the OS config agent on GCP end. Additional information on Arc auto-provisioning can be found in the [OS config agent on the GCP machines](https://cloud.google.com/compute/docs/images/os-details#vm-manager) article.
144+
- **(Recommended) Auto-provisioning** - Auto-provisioning is enabled by default in the onboarding process and requires owner permissions on the subscription. Arc auto-provisioning process is using the OS config agent on GCP end. Learn more about the [OS config agent availability on GCP machines](https://cloud.google.com/compute/docs/images/os-details#vm-manager).
145+
146+
> [!NOTE]
147+
> The Arc auto-provisioning process leverages the VM manager on your Google Cloud Platform, to enforce policies on the your VMs through the OS config agent. A VM with an [Active OS agent](https://cloud.google.com/compute/docs/manage-os#agent-state), will incur a cost according to GCP. Refer to [GCP's technical documentation](https://cloud.google.com/compute/docs/vm-manager#pricing) to see how this may affect your account.
148+
> <br><br> Microsoft Defender for Servers does not install the OS config agent to a VM that does not have it installed. However, Microsoft Defender for Servers will enable communication between the OS config agent and the OS config service if the agent is already installed but not communicating with the service.
149+
> <br><br> This can change the OS config agent from `inactive` to `active`, and will lead to additional costs.
150+
145151
- **Manual installation** - You can manually connect your VM instances to Azure Arc for servers. Instances in projects with Defender for Servers plan enabled that are not connected to Arc will be surfaced by the recommendation “GCP VM instances should be connected to Azure Arc”. Use the “Fix” option offered in this recommendation to install Azure Arc on the selected machines.
146152

147153
- The following extensions should be enabled on the Arc-connected machines according to your needs:

0 commit comments

Comments
 (0)