Update file-integrity-monitoring-overview.md#138
Conversation
https://learn.microsoft.com/en-us/azure/defender-for-cloud/file-integrity-monitoring-enable-defender-endpoint#prerequisites "You must enable agentless machine scanning on your subscription to gain extra coverage and the ability to monitor custom paths." From the principle of how the Agentless scanning works, this will not work for ARC servers that are on-prem or in 3rd party cloud resources which are not onboarded via the connector
|
@pixel559 : Thanks for your contribution! The author(s) and reviewer(s) have been notified to review your proposed change. |
|
Learn Build status updates of commit e29a4e3: ✅ Validation status: passed
For more details, please refer to the build report. |
|
Can you review the proposed changes? Important: When the changes are ready for publication, adding a #label:"aq-pr-triaged" |
There was a problem hiding this comment.
Pull request overview
Note
Copilot was unable to run its full agentic suite in this review.
Updates File Integrity Monitoring guidance to clarify that custom path monitoring requires agentless machine scanning coverage.
Changes:
- Adds a note to the “custom folder path” bullet indicating custom path monitoring is only supported for machines covered by agentless scanning, with a link to enable it.
| - Monitor any file located in a folder `/folder/path/*`. (Custom path monitoring is supported only for machines covered with agentless scanning [Enable agentless machine scanning](enable-agentless-scanning-vms.md)) | ||
|
|
| - Monitor files that you don’t expect to change without planning. | ||
| - Select files that applications or the operating system frequently change (such as log files and text files) creates noise and makes it hard to identify an attack. | ||
| - Monitor any file located in a folder `/folder/path/*`. | ||
| - Monitor any file located in a folder `/folder/path/*`. (Custom path monitoring is supported only for machines covered with agentless scanning [Enable agentless machine scanning](enable-agentless-scanning-vms.md)) |
|
Hello @ElazarK , |
|
#assign-reviewer:DebLanger |
https://learn.microsoft.com/en-us/azure/defender-for-cloud/file-integrity-monitoring-enable-defender-endpoint#prerequisites
"You must enable agentless machine scanning on your subscription to gain extra coverage and the ability to monitor custom paths."
From the principle of how the Agentless scanning works, this will not work for ARC servers that are on-prem or in 3rd party cloud resources which are not onboarded via the connector