none
Microsoft Antiware RRS feed

  • Question

  • Hi,

    We installed Microsoft Antimalware extension via Azure Portal to VMs.

    How can we manage the add and delete Exclusion files/extension/location? 

    Thanks

    Friday, January 25, 2019 6:20 AM

All replies

  • Unfortunately you cannot update the Antimalware settings through the Azure Portal.

    You need to create a JSON file with the settings you want to change and deploy it to the VMs

    Check here: https://docs.microsoft.com/en-us/powershell/module/servicemanagement/azure/set-azurevmmicrosoftantimalwareextension?view=azuresmps-4.0.0

    Create the JSON:

    Microsoft Antimalware JSON configuration sample:

    { "AntimalwareEnabled": true, "RealtimeProtectionEnabled": true, "ScheduledScanSettings": { "isEnabled": true, "day": 1, "time": 120, "scanType": "Full" },

    "Exclusions": { "Extensions": ".ext1;.ext2", "Paths": "c:\excluded-path-1;c:\excluded-path-2", "Processes": "excludedproc1.exe;excludedproc2.exe" }

    }

    And then apply it:

    $Config_String = [IO.File]::ReadAllText('C:\configuration\contosoVM.json')

    Get-AzureVM -ServiceName "ContosoService03" -Name "ContosoVM22" | Set-AzureVMMicrosoftAntimalwareExtension -AntimalwareConfiguration $Config_String | Update-AzureVM


    Cheers,
    Pantelis Apostolidis
    My blog: Apostolidis IT Corner | Twitter: @papostolidis | Linkedin: papostolidis

    -------------------------------------------------------------------------------------------------------------------------
    Do click on Mark as Answer on the post that helps you, this can be beneficial to other community members.

    Friday, January 25, 2019 3:04 PM