Security overview - Azure Arc
Security gaps often emerge when managing infrastructure across public cloud, private cloud, and on-prem environments. Azure Arc helps bridge those gaps by extending Azure security tools to Arc-enabled servers running anywhere. Read this Microsoft Learn article to see how it works and how your organization can benefit. Contact ERP Consulting, LLC for a complimentary security assessment of your hybrid environment.
What is the shared responsibility model for Azure Arc-enabled servers?
The security of Azure Arc-enabled servers is a shared responsibility. Microsoft is responsible for securing the cloud service that stores system metadata, protecting privacy, documenting optional security features, publishing regular agent updates, managing RBAC access, and securing the server infrastructure. Users are responsible for securing the server itself, managing credentials, determining the application of security features, and ensuring compliance with legal and internal policies.
How does the Azure Connected Machine agent function?
The Azure Connected Machine agent acts as an enablement platform that connects your machine to Azure. It establishes a relationship with your Azure subscription, provides a managed identity for authentication, enables additional capabilities through extensions, and enforces settings on your server. The agent is essential for relaying data and actions between your managed server and Azure.
What security measures should be taken for Tier 0 assets?
For Tier 0 assets, it is recommended to use a dedicated Azure subscription to minimize access and closely monitor permissions. You should also disable unnecessary management features, such as remote access capabilities and the extension manager, unless they are needed. Implementing an extension allowlist can help restrict the use of extensions to only those that meet your security requirements.

Security overview - Azure Arc
published by ERP Consulting, LLC
ERP Consulting, LLC is a trusted IT consulting firm dedicated to empowering small and medium-sized businesses (SMBs) with tailored solutions that drive growth and efficiency. Specializing in Microsoft Dynamics GP and Dynamics 365 Business Central, we offer comprehensive services including seamless implementation, customized training, dedicated support, and secure data migration. Our experienced team combines cutting-edge strategies with proven methodologies to streamline your operations and provide valuable data insights, ensuring your business thrives in today's competitive landscape.
Our Services:
-
Implementation and Training: We ensure smooth integration of Microsoft Dynamics GP and Dynamics 365 Business Central into your operations, offering tailored training sessions to enhance your team's proficiency and productivity.
-
Support: Our dedicated support team provides timely and effective solutions to maintain peak system performance, minimizing downtime and optimizing your ERP systems for continuous efficiency.
-
Migrations: Specializing in data migration from Dynamics GP and other legacy systems to Dynamics 365 Business Central, we ensure secure and accurate transfers with minimal operational disruption.
At ERP Consulting, LLC, we prioritize our clients' needs, going above and beyond to deliver exceptional service. Our commitment to excellence and attention to detail have made us a trusted partner for businesses seeking to streamline operations and achieve measurable results.
Contact Us:
Let ERP Consulting, LLC guide you toward success with solutions tailored to your unique business needs. Visit us at erpconsultingllc.com to learn more.