Connect your non-Azure machines to Microsoft Defender for Cloud

Microsoft Defender for Cloud can monitor the security posture of your non-Azure machines, but first you need to connect them to Azure.

You can connect your non-Azure computers in any of the following ways:

  • Onboarding with Azure Arc:
    • By using Azure Arc-enabled servers (recommended)
    • By using the Azure portal

This article describes the methods for onboarding with Azure Arc.

Prerequisites

To complete the procedures in this article, you need:

Connect on-premises machines by using Azure Arc

A machine with Azure Arc-enabled servers becomes an Azure resource. Once connected to an Azure subscription with Defender for Servers enabled, it appears in Defender for Cloud, like your other Azure resources.

Azure Arc-enabled servers provide enhanced capabilities, such as enabling guest configuration policies on the machine and simplifying deployment with other Azure services. For an overview of the benefits of Azure Arc-enabled servers, see Supported cloud operations.

To deploy Azure Arc on one machine, follow the instructions in Quickstart: Connect hybrid machines with Azure Arc-enabled servers.

To deploy Azure Arc on multiple machines at scale, follow the instructions in Connect hybrid machines to Azure at scale.

Verify that your machines are connected

Your Azure and on-premises machines are available to view in one location.

To verify that your machines are connected:

  1. Sign in to the Azure portal.

  2. Search for and select Microsoft Defender for Cloud.

  3. On the Defender for Cloud menu, select Inventory to show the asset inventory.

  4. Filter the page to view the relevant resource types. These icons distinguish the types:

    Defender for Cloud icon for an on-premises machine. Non-Azure machine

    Defender for Cloud icon for an Azure machine. Azure VM

    Defender for Cloud icon for an Azure Arc-enabled server. Azure Arc-enabled server

Integrate with Microsoft Defender XDR

When you enable Defender for Cloud, Defender for Cloud's alerts are automatically integrated into the Microsoft Defender Portal.

The integration between Microsoft Defender for Cloud and Microsoft Defender XDR brings your cloud environments into Microsoft Defender XDR. With Defender for Cloud's alerts and cloud correlations integrated into Microsoft Defender XDR, SOC teams can now access all security information from a single interface.

Learn more about Defender for Cloud's alerts in Microsoft Defender XDR.

Clean up resources

There's no need to clean up any resources for this article.