I have a VNET which restricts all access outbound using an NSG except for 1 specific port which is used for an app it hosts. However I need a way to allow Defender to communicate with the MS 365 Defender portal so it can report in. I tried using a couple of the service tags (MS Cloud App security and ATP) but don't seem to work. Is there an IP or set of IPs I need to allow out for it to communicate?
Azure NSG rule to allow VM to access MS 365 Defender
613 Views Asked by amaru96 At
1
There are 1 best solutions below
Related Questions in AZURE
- Why does Azure Auto-Scale scale go lower then minimum amount of instances?
- Data execution plan ended with error on DB restore
- Why does Azure CloudConfigurationManager.GetSetting return null
- Do I need other roles than Worker Role for a web site and service layer in Azure?
- Azure Web App PATH Variable Modification
- Azure Data Factory: LinkedService for AzureSql in failed state
- How To Update a Web Application In Azure and Keep The App Up the whole time
- Using Azure MobileServices library with my own LAN WebApi
- ionCube loader error on Azure IIS
- App crash (if closed) after click on notification
- How to get sql data bases instances in azure using java api
- I want to create file in azure share using python PUT requests but getting error signature not correct including headers
- Enabling OPTIONS method on Azure Cloud Service (to enable CORS)
- Redirecting subdomain to directory on Azure
- Kaltura account settings error
Related Questions in AZURE-NSG
- How to run a Azure Powershell cmdlets on a VM when outbound Internet access is restricted
- How to whitelist source IPs on Azure VMs fronted by Azure Load Balancer
- How to create Azure NSG flow log with Traffic Analytics using Bicep
- Azure APIM Developer Portal Designer via Front Door
- I'm trying to deploy a Azure databricks instance integrated with Vnet on Azure Subscription. Vnet already exists
- Create NSG ARM Template from CSV via Azure PowerShell
- How to block internet for everyone except for one single IP in Azure VM
- Get Azure resources associated with a subnet through Azure Resource Graph Query
- How to prevent IP spoofing for Azure VMs?
- How to define a inbound security rule in a NSG defining source as an Azure SQL Server
- Adding new security rule to Network Security group in Azure through Java SDK
- Do I need to open Azure NSG firewall rule and VM firewall rule at the same time
- NSG rule across subscription in azure via terraform
- How to restrict internet access to a subnet, and allow from only another subnet of the same vnet?
- Azure Terraform NSG rule creation ERROR for DestinationAddressPrefix/DestinationAddressPrefixes as "AzureMonitor"
Related Questions in MICROSOFT365-DEFENDER
- Microsoft Defender onboarding Issues for MAC
- MCAS - Enable service workers
- Prevent mdatp (Microsoft Defender Advanced Threat Protection) for linux to move malicious files to the quarantine
- Kusto Query Language - Microsoft Defender IP Subnet Query
- KQL - Check value every hour to see if it's higher than the week average
- Tool with macros blocked by security / ASR rules - how to fix?
- PS Script to uninstall Firefox from multiple locations
- Microsoft Defender (Advanced Hunting) : Detecting File copying
- Which scope use to get the access token for Microsoft credential
- KQL Querying MDE/MDO's API
- How to pull Defender (Microsoft 365) reports from Exchange Online Protection
- Azure NSG rule to allow VM to access MS 365 Defender
- Does MS Graph API support Microsoft 365 Defender
- Windows defender endpoint and clickonce VSTO plugin
- How do i join all events related to a single identifier in KQL?
Trending Questions
- UIImageView Frame Doesn't Reflect Constraints
- Is it possible to use adb commands to click on a view by finding its ID?
- How to create a new web character symbol recognizable by html/javascript?
- Why isn't my CSS3 animation smooth in Google Chrome (but very smooth on other browsers)?
- Heap Gives Page Fault
- Connect ffmpeg to Visual Studio 2008
- Both Object- and ValueAnimator jumps when Duration is set above API LvL 24
- How to avoid default initialization of objects in std::vector?
- second argument of the command line arguments in a format other than char** argv or char* argv[]
- How to improve efficiency of algorithm which generates next lexicographic permutation?
- Navigating to the another actvity app getting crash in android
- How to read the particular message format in android and store in sqlite database?
- Resetting inventory status after order is cancelled
- Efficiently compute powers of X in SSE/AVX
- Insert into an external database using ajax and php : POST 500 (Internal Server Error)
Popular Questions
- How do I undo the most recent local commits in Git?
- How can I remove a specific item from an array in JavaScript?
- How do I delete a Git branch locally and remotely?
- Find all files containing a specific text (string) on Linux?
- How do I revert a Git repository to a previous commit?
- How do I create an HTML button that acts like a link?
- How do I check out a remote Git branch?
- How do I force "git pull" to overwrite local files?
- How do I list all files of a directory?
- How to check whether a string contains a substring in JavaScript?
- How do I redirect to another webpage?
- How can I iterate over rows in a Pandas DataFrame?
- How do I convert a String to an int in Java?
- Does Python have a string 'contains' substring method?
- How do I check if a string contains a specific word?
If it is the end point of the application you are protecting then:
MicrosoftDefenderForEndpoint
A full list of service tags is available here:
https://learn.microsoft.com/en-us/azure/virtual-network/service-tags-overview