last sync: 2024-Nov-25 18:54:24 UTC

Windows Arc-enabled machines should have Azure Monitor Agent installed

Azure BuiltIn Policy definition

Source Azure Portal
Display name Windows Arc-enabled machines should have Azure Monitor Agent installed
Id ec621e21-8b48-403d-a549-fc9023d4747f
Version 1.2.0
Details on versioning
Versioning Versions supported for Versioning: 2
1.1.0
1.2.0
Built-in Versioning [Preview]
Category Monitoring
Microsoft Learn
Description Windows Arc-enabled machines should be monitored and secured through the deployed Azure Monitor Agent. The Azure Monitor Agent collects telemetry data from the guest OS. Windows Arc-enabled machines in supported regions are monitored for Azure Monitor Agent deployment. Learn more: https://aka.ms/AMAOverview.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
AuditIfNotExists
Allowed
AuditIfNotExists, Disabled
RBAC role(s) none
Rule aliases IF (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.HybridCompute/machines/osName Microsoft.HybridCompute machines properties.osName True False
THEN-ExistenceCondition (3)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.HybridCompute/machines/extensions/provisioningState Microsoft.HybridCompute machines/extensions properties.provisioningState True False
Microsoft.HybridCompute/machines/extensions/publisher Microsoft.HybridCompute machines/extensions properties.publisher True False
Microsoft.HybridCompute/machines/extensions/type Microsoft.HybridCompute machines/extensions properties.type True False
Rule resource types IF (1)
Microsoft.HybridCompute/machines
Compliance
The following 1 compliance controls are associated with this Policy definition 'Windows Arc-enabled machines should have Azure Monitor Agent installed' (ec621e21-8b48-403d-a549-fc9023d4747f)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
NL_BIO_Cloud_Theme U.15.1(2) NL_BIO_Cloud_Theme_U.15.1(2) NL_BIO_Cloud_Theme_U.15.1(2) U.15 Logging and monitoring Events Logged n/a The malware protection is carried out on various environments, such as on mail servers, (desktop) computers and when accessing the organization's network. The scan for malware includes: all files received over networks or through any form of storage medium, even before use; all attachments and downloads even before use; virtual machines; network traffic. 46
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
NL BIO Cloud Theme V2 d8b2ffbe-c6a8-4622-965d-4ade11d1d2ee Regulatory Compliance GA BuiltIn
History
Date/Time (UTC ymd) (i) Change type Change detail
2024-03-25 19:17:21 change Minor (1.1.0 > 1.2.0)
2023-02-03 18:39:01 change Minor (1.0.1 > 1.1.0)
2022-03-11 18:16:48 change Patch (1.0.0 > 1.0.1)
2021-10-22 15:42:38 add ec621e21-8b48-403d-a549-fc9023d4747f
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC