π Microsoft Defender Agentless Container Vulnerability Assessment Component is not enabled π’
- Contextual name: π Agentless Container Vulnerability Assessment Component is not enabled π’
- ID:
/ce/ca/azure/microsoft-defender/agentless-container-vulnerability-assessment
- Located in: π Microsoft Defender for Cloud
Flagsβ
- π’ Impossible policy
- π’ Policy with categories
- π’ Policy with type
Our Metadataβ
- Policy Type:
COMPLIANCE_POLICY
- Policy Category:
SECURITY
Descriptionβ
Descriptionβ
Enable automatic vulnerability management for images stored in ACR or running in AKS clusters.
Rationaleβ
Agentless vulnerability scanning will examine container images - whether running or in storage - for vulnerable configurations.
Impactβ
Agentless container vulnerability assessment requires licensing and is included in:
- Defender CSPM
- Defender for Containers plans.
Auditβ
From Azure Portalβ
- From the Azure Portal
Home
page, selectMicrosoft Defender for Cloud
.- Under
Management
selectEnvironment Settings
.- Select a subscription.
- Under
Settings
>Defender Plans
, clickSettings & monitoring
.- Locate the row for
Agentless container vulnerability assessment
.- Ensure that
On
is selected.Repeat the above for any additional subscriptions.
Default Valueβ
By default, Microsoft Defender for Containers is
Off
. If Defender for Containers is enabled from the Microsoft Defender for Cloud portal, auto provisioning will be enabled.Referencesβ
... see more
Remediationβ
Remediationβ
From Azure Portalβ
- From the Azure Portal
Home
page, selectMicrosoft Defender for Cloud
.- Under
Management
selectEnvironment Settings
.- Select a subscription.
- Under
Settings
>Defender Plans
, clickSettings & monitoring
.- Locate the row for
Agentless container vulnerability assessment
.- Select
On
.- Click
Continue
in the top left.Repeat the above for any additional subscriptions.
policy.yamlβ
Linked Framework Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ CIS Azure v3.0.0 β πΌ 3.1.4.3 Ensure that 'Agentless container vulnerability assessment' component status is 'On' (Automated) | 1 | |||
πΌ Cloudaware Framework β πΌ Microsoft Defender Configuration | 26 |