Microsoft Defender for Cloud
Cloud and workloads

Overview of Defender for Servers in Defender for Cloud

In brief

The overview now states that Defender for Servers no longer uses the Log Analytics agent or Azure Monitor Agent for most plan features, with agentless scanning and Defender for Endpoint integration replacing them. It also links to the AWS and GCP support matrix.

What Defender admins need to know

Administrators can use the updated guidance to understand agent applicability and compare multicloud plan coverage; no action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Defender for Servers

The Defender for Servers plan in Microsoft Defender for Cloud reduces security risk and exposure for machines in your organization. It provides recommendations to improve and remediate security posture. Defender for Servers also protects machines against real-time security threats and attacks.

Benefits

Plan features are summarized in the table.

For a comparison of AWS and GCP coverage by plan, see the multicloud workload protection support matrix.

Feature Plan 1 (P1) Plan 2 (P2) Cloud availability
Multicloud and hybrid support :::image type="icon" source="./media/icons/yes-icon.png"::: :::image type="icon" source="./media/icons/yes-icon.png"::: Protects Virtual Machines (VMs) on Azure, AWS and GCP VMs, and on-premises machines that are connected to Microsoft Defender for Cloud.

Review Defender for Servers support and requirements.