EDR solution should be installed on Virtual Machines

Mahavir Saroj 201 Reputation points
2024-07-20T15:46:41.0033333+00:00

We have choosen Microsoft defender for cloud Plan 1 for Azure Windows VM server.

We are getting Microsoft defender for cloud recommendations :- EDR solution should be installed on Virtual Machines and it is showing Unsupported Defender for Cloud plan for agentless scanning under not applicable resources.

We have already deployed MDE.Windows extension on Azure VM.

I'm wondering whether EDR and Microsoft defender for endpoint is same or different.

How to resolve EDR solution should be installed on Virtual Machines recommendationsUser's image

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,339 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Shweta Mathur 29,736 Reputation points Microsoft Employee
    2024-07-23T12:25:16.13+00:00

    Hi Mahavir Saroj

    I'm wondering whether EDR and Microsoft defender for endpoint is same or different.

    Microsoft Defender for Endpoint (MDE) and EDR (Endpoint Detection and Response) are the same thing. Microsoft Defender for Endpoint includes EDR capabilities, as well as other security features such as antivirus, firewall, and device control.

    Unsupported Defender for Cloud plan for agentless scanning under not applicable resources.

    Also, agentless scanning is included in the Cloud Security Posture Management (CSPM) and Defender for Servers P2 plan. So, if you have either of these plans, then only you can enable agentless scanning for your Azure virtual machines

    How to resolve EDR solution should be installed on Virtual Machines recommendations

    EDR solution should be installed on Virtual Machines recommendation offers multiple recommended actions to resolve on each attached machine:

    • Enable Microsoft Defender for Endpoint integration. Alternatively, you can remediate this recommendation by installing any of the supported endpoint detection and response solution on your virtual machine which is already enabled for you.
    • Upgrade Defender plan - when defender for Servers plan 2 isn't enabled on the VM.

    Reference - https://github.com/MicrosoftDocs/azure-docs/blob/main/articles/defender-for-cloud/endpoint-detection-response.md#supported-solutions-and-platforms

    Thanks,

    Shweta

    Please remember to "Accept Answer" if answer helped you.

    0 comments No comments

  2. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.