Skip to main content
Answer needs confirmation
Question

You have an Azure subscription that has Microsoft Defender for Cloud enabled.
You have 50 Azure virtual machines that run Windows Server.
You need to ensure that any security exploits detected on the virtual machines are forwarded to Defender for Cloud.
Which extension should you enable on the virtual machines?

Proposed answer
  • A. Vulnerability assessment for machines
  • B. Microsoft Dependency agent
  • C. Log Analytics agent for Azure VMs
  • D. Guest Configuration agent

 

Suggested answer
  • A. Vulnerability assessment for machines
Comments

 

GoforIT21

Highly Voted 2 years, 2 months ago 

Selected Answer: A

If I understand it correctly, then there's a difference between a VM extension and an agent. As the question is about an extension and three of the four answers mention an agent, the answer must be A, I guess...

upvoted 7 times 

xxxxx85xx

Highly Voted 2 years, 8 months ago 

Correct Answer

upvoted 5 times 

starseed

Most Recent 3 months ago 

Vulnerability assessment for VMs

upvoted 1 times 

syu31svc

1 year, 7 months ago 

Selected Answer: A

https://learn.microsoft.com/en-us/azure/defender-for-cloud/deploy-vulnerability-assessment-vm When a machine is found that doesn't have a vulnerability assessment solution deployed, Defender for Cloud generates the security recommendation: Machines should have a vulnerability assessment solution. Use this recommendation to deploy the vulnerability assessment solution to your Azure virtual machines and your Azure Arc-enabled hybrid machines. Answer is A

upvoted 2 times 

Leocan

1 year, 12 months ago 

Selected Answer: A

https://learn.microsoft.com/en-us/azure/defender-for-cloud/enable-vulnerability-assessment-agentless

upvoted 4 times 

Jawad1462

2 years, 1 month ago 

Selected Answer: A

Correct answer

upvoted 3 times 

Josty

2 years, 3 months ago 

Selected Answer: A

Sorry it is A

upvoted 5 times 

Josty

2 years, 3 months ago 

Selected Answer: C

due to the reference it should be C Log Analytics agent for Azure VMs

upvoted 2 times 

rimvydukas

1 year, 11 months ago 

Defender for Cloud's integrated vulnerability assessment solution works seamlessly with Azure Arc. When you've deployed Azure Arc, your machines will appear in Defender for Cloud and no Log Analytics agent is required.

upvoted 3 times