π‘οΈ Microsoft Defender Agentless Container Vulnerability Assessment Component is not enabledπ’βͺ
- Contextual name: π‘οΈ Agentless Container Vulnerability Assessment Component is not enabledπ’βͺ
- ID:
/ce/ca/azure/microsoft-defender/agentless-container-vulnerability-assessment - Tags:
- βͺ Impossible policy
- π’ Policy with categories
- π’ Policy with type
- Policy Type:
COMPLIANCE_POLICY - Policy Categories:
SECURITY
Descriptionβ
Descriptionβ
Enable automatic vulnerability management for images stored in ACR or running in AKS clusters.
Rationaleβ
Agentless vulnerability scanning will examine container images - whether running or in storage - for vulnerable configurations.
Impactβ
Agentless container vulnerability assessment requires licensing and is included in:
- Defender CSPM
- Defender for Containers plans.
Auditβ
From Azure Portalβ
- From the Azure Portal
Homepage, selectMicrosoft Defender for Cloud.- Under
ManagementselectEnvironment Settings.- Select a subscription.
- Under
Settings>Defender Plans, clickSettings & monitoring.- Locate the row for
Agentless container vulnerability assessment.- Ensure that
Onis selected.Repeat the above for any additional subscriptions.
Default Valueβ
By default, Microsoft Defender for Containers is
Off. If Defender for Containers is enabled from the Microsoft Defender for Cloud portal, auto provisioning will be enabled.Referencesβ
... see more
Remediationβ
Remediationβ
From Azure Portalβ
- From the Azure Portal
Homepage, selectMicrosoft Defender for Cloud.- Under
ManagementselectEnvironment Settings.- Select a subscription.
- Under
Settings>Defender Plans, clickSettings & monitoring.- Locate the row for
Agentless container vulnerability assessment.- Select
On.- Click
Continuein the top left.Repeat the above for any additional subscriptions.
policy.yamlβ
Linked Framework Sectionsβ
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|---|---|---|---|---|
| πΌ CIS Azure v3.0.0 β πΌ 3.1.4.3 Ensure that 'Agentless container vulnerability assessment' component status is 'On' (Automated) | 1 | no data | |||
| πΌ Cloudaware Framework β πΌ Microsoft Defender Configuration | 26 | no data |