last sync: 2022-May-23 08:52:47 UTC

Azure Policy definition

[Preview]: Deploy Microsoft Defender for Endpoint agent on Windows virtual machines

Name [Preview]: Deploy Microsoft Defender for Endpoint agent on Windows virtual machines
Azure Portal
Id 1ec9c2c2-6d64-656d-6465-3ec3309b8579
Version 2.0.0-preview
details on versioning
Category Security Center
Microsoft docs
Description Deploys Microsoft Defender for Endpoint on applicable Windows VM images.
Mode Indexed
Type BuiltIn
Preview True
Deprecated FALSE
Effect Default: DeployIfNotExists
Allowed: (DeployIfNotExists, AuditIfNotExists, Disabled)
Used RBAC Role
Role Name Role Id
Security Admin fb1c8493-542b-48eb-b624-b4c8fea62acd
Rule Aliases IF (6)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Compute/imageOffer Microsoft.Compute
Microsoft.Compute
Microsoft.Compute
virtualMachines
virtualMachineScaleSets
disks
properties.storageProfile.imageReference.offer
properties.virtualMachineProfile.storageProfile.imageReference.offer
properties.creationData.imageReference.id
false
false
false
Microsoft.Compute/imagePublisher Microsoft.Compute
Microsoft.Compute
Microsoft.Compute
virtualMachines
virtualMachineScaleSets
disks
properties.storageProfile.imageReference.publisher
properties.virtualMachineProfile.storageProfile.imageReference.publisher
properties.creationData.imageReference.id
false
false
false
Microsoft.Compute/imageSKU Microsoft.Compute
Microsoft.Compute
Microsoft.Compute
virtualMachines
virtualMachineScaleSets
disks
properties.storageProfile.imageReference.sku
properties.virtualMachineProfile.storageProfile.imageReference.sku
properties.creationData.imageReference.id
false
false
false
Microsoft.Compute/virtualMachines/imagePublisher Microsoft.Compute virtualMachines properties.storageProfile.imageReference.publisher true
Microsoft.Compute/virtualMachines/storageProfile.imageReference.id Microsoft.Compute virtualMachines properties.storageProfile.imageReference.id true
Microsoft.Compute/virtualMachines/storageProfile.osDisk.osType Microsoft.Compute virtualMachines properties.storageProfile.osDisk.osType true
THEN-ExistenceCondition (3)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Compute/virtualMachines/extensions/provisioningState Microsoft.Compute virtualMachines/extensions properties.provisioningState false
Microsoft.Compute/virtualMachines/extensions/publisher Microsoft.Compute virtualMachines/extensions properties.publisher false
Microsoft.Compute/virtualMachines/extensions/type Microsoft.Compute virtualMachines/extensions properties.type false
Rule ResourceTypes IF (1)
Microsoft.Compute/virtualMachines
THEN-Deployment (2)
Microsoft.Compute/virtualMachines/extensions
Microsoft.Security/mdeOnboardings
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-04-15 17:17:14 change Major, suffix remains equal (1.0.0-preview > 2.0.0-preview)
2022-02-18 17:44:00 add 1ec9c2c2-6d64-656d-6465-3ec3309b8579
Used in Initiatives
Initiative DisplayName Initiative Id Initiative Category State Type
[Preview]: Deploy Microsoft Defender for Endpoint agent e20d08c5-6d64-656d-6465-ce9e37fd0ebc Security Center Preview BuiltIn
JSON Changes

JSON