Microsoft Defender for Cloud
Cloud and workloads

Resolve agentless scan errors for GCP VMs in Microsoft Defender for Cloud

In brief

The article now focuses on missing agentless scan results for GCP VMs when the Compute Storage resource use restrictions policy blocks access to required disk, image, or snapshot resources. It also clarifies that validation after a policy change can take up to 24 hours.

What Defender admins need to know

Administrators troubleshooting GCP VM scan results can use the more targeted guidance and allow up to 24 hours for the next scheduled scan to confirm the policy change.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

  1. Select Save.

Defender for Cloud triggers agentless disk scanning with API calls. You'll know this fixpolicy change worked after the next scheduled scan API call, which can take up to 24 hours.

Next stepsteps

[!div class="nextstepaction"] Common GCP questions