Enable Defender for Servers in hybrid environments
IT staff at Contoso want to use Microsoft Defender for Cloud to help secure their VM workloads and their on-premises servers. To onboard their VMs and on-premises servers to Microsoft Defender for Cloud, they must complete the following tasks:
- Enable a Defender for Servers plan.
- Verify Defender for Endpoint integration and agentless scanning settings.
- Onboard non-Azure servers with Azure Arc.
Enable a Defender for Servers plan
To use Microsoft Defender for Cloud advanced server protection capabilities or to protect on-premises servers, enable Defender for Servers on the subscription that contains your Azure VMs or Azure Arc-enabled servers. Defender for Servers has two plans:
- Defender for Servers Plan 1 (P1) provides core server EDR capabilities through Microsoft Defender for Endpoint.
- Defender for Servers Plan 2 (P2) includes Plan 1 capabilities and adds features such as agentless machine scanning, just-in-time VM access, file integrity monitoring, and other advanced protections.
To enable Defender for Servers, use the following procedure:
- In the Azure portal, select Microsoft Defender for Cloud.
- In the navigation pane, select Environment settings.
- Select the subscription that contains the servers you want to protect.
- Select Defender plans.
- For Servers, select Plan 1 or Plan 2, and then select Save.