Protect network resources

Important

Attention: All Microsoft Defender for Cloud features will be officially retired in Azure in China region on August 18, 2026 per the announcement posted by 21Vianet.

Microsoft Defender for Cloud continuously analyzes the security state of your Azure resources for network security best practices. When Defender for Cloud identifies potential security vulnerabilities, it creates recommendations that guide you through the process of configuring the needed controls to harden and protect your resources.

Review Defender for Cloud networking recommendations.

This article addresses recommendations that apply to your Azure resources from a network security perspective. Networking recommendations center around next generation firewalls, Network Security Groups, Just In Time (JIT) Virtual Machine (VM) access, overly permissive inbound traffic rules, and more. For a list of networking recommendations and remediation actions, see Managing security recommendations in Microsoft Defender for Cloud.

Review networking resources and their recommendations

The inventory page shows your resources by type. Use the resource type filter to see only the networking resources in your environment.

  1. Sign in to the Azure portal.

  2. Go to Microsoft Defender for Cloud > Inventory.

    Screenshot that shows where the inventory page is located in Defender for Cloud.

  3. Select the Resource type filter.

  4. Enter Network.

    Screenshot that shows asset inventory network resource types.

  5. Select the relevant resource types.

  6. Select Apply.

  7. Hover over the recommendation indicator to see the number of active recommendations for each resource.

    Screenshot that shows the active recommendations for a resource.

  8. Select a resource to view the affiliated recommendations.

  9. Select a recommendation.

  10. Remediate the recommendation.

Next step