Ensure that Agentless Discovery for Kubernetes is enabled for Microsoft Defender for Cloud in order to improve the security posture of your Kubernetes workloads.
The Agentless Discovery for Kubernetes feature provides API-based discovery of Kubernetes clusters, their configurations, and deployments with a zero-footprint approach. This functionality is essential for agentless container posture management, as well as for conducting runtime vulnerability assessments and executing response actions.
Note: Agentless Discovery for Kubernetes is included in the following Microsoft Defender for Cloud plans: Defender CSPM and Containers.
Audit
To determine if Agentless Discovery for Kubernetes is enabled within the Microsoft Defender for Cloud settings for your Azure subscriptions, perform the following operations:
Note: Getting the configuration status for the Agentless Discovery for Kubernetes feature in Microsoft Defender for Cloud using Azure CLI/PowerShell is not currently supported.Remediation / Resolution
To enable Agentless Discovery for Kubernetes within the Microsoft Defender for Cloud settings for your Azure subscriptions, perform the following operations:
Note: Enabling the Agentless Discovery for Kubernetes feature in Microsoft Defender for Cloud settings using Azure CLI/PowerShell is not currently supported.References
- Azure Official Documentation
- Microsoft Defender for Cloud documentation
- What is Microsoft Defender for Cloud?
- Container protection in Defender for Cloud
- Configure Microsoft Defender for Containers components
- Agentless container posture in Defender CSPM
- Onboard agentless container posture in Defender CSPM