AZ-801 · Question #161
You have an on-premises server named Server1 that runs Windows Server. You have an Azure subscription. You need to onboard Server1 to Microsoft Defender for Cloud. What should you install on Server1?
The correct answer is C. the Azure Connected Machine agent. To onboard an on-premises Windows Server to Microsoft Defender for Cloud, you need to install the Azure Connected Machine agent.
Question
Options
- Athe Azure File Sync agent
- Bthe Microsoft Entra provisioning agent
- Cthe Azure Connected Machine agent
- Dthe Device Health Attestation role
How the community answered
(29 responses)- A7% (2)
- C90% (26)
- D3% (1)
Why each option
To onboard an on-premises Windows Server to Microsoft Defender for Cloud, you need to install the Azure Connected Machine agent.
The Azure File Sync agent is used to synchronize files between on-premises Windows file servers and Azure Files, which is unrelated to onboarding a server to Microsoft Defender for Cloud.
The Microsoft Entra provisioning agent is used for synchronizing identities from on-premises directories to Microsoft Entra ID or for cloud HR provisioning, not for onboarding a server to Microsoft Defender for Cloud.
The Azure Connected Machine agent (also known as the Azure Arc agent) is specifically designed to onboard on-premises Windows and Linux machines to Azure Arc, which then allows them to be managed as Azure resources, including integration with services like Microsoft Defender for Cloud for security monitoring and management.
The Device Health Attestation role is a Windows Server role that provides a service to verify the health status of client devices, unrelated to onboarding a server to Microsoft Defender for Cloud.
Concept tested: Defender for Cloud on-premises onboarding agent
Source: https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-machines?pivots=azure-arc
Topics
Community Discussion
No community discussion yet for this question.