Forum Discussion
Erik_Snijder
Dec 08, 2022Copper Contributor
Agentless scanning versus Aure Monitoring Agent
Hi,
We are looking into the new Agentless scanning option for VM's. We don't yet understand the exact usecase for this feature.
Because the agentless option only provides vulnerability scanning it cannot replace the AMA if also VM security logs are needed.
So the only usecase I see at this moment is for VM's with restricted outobund access and only with vulnerability scanning as requirement. Is that correct?
Is there a usecase for enabling agentless scanning alongside the AMA, or will that result in duplicate data?
Thank you in advance,
Erik
- Agentless does not depend upon on the machine being online/started, nor on any log data that exists on the scanned machine, nor does it need MDE deployed or configured nor does it need an agent based TVM solution on it.
See for details:
https://learn.microsoft.com/eN-us/azure/defender-for-cloud/enable-vulnerability-assessment-agentless
1 Reply
- Vytas_Boyev
Microsoft
Agentless does not depend upon on the machine being online/started, nor on any log data that exists on the scanned machine, nor does it need MDE deployed or configured nor does it need an agent based TVM solution on it.
See for details:
https://learn.microsoft.com/eN-us/azure/defender-for-cloud/enable-vulnerability-assessment-agentless