How to scan an Azure cloud environment

Azure scanning is a feature introduced in Lansweeper 7.1. If you are using an older Lansweeper release, you will need to update by following the instructions in this knowledge base article.
Not all Lansweeper licenses support Azure scanning. If your particular license does not support this feature, please visit this page for more information.

From version 7.1 onward, Lansweeper is capable of scanning resource groups and virtual machines hosted on the Microsoft Azure cloud computing platform. An asset is created for each resource group and for each virtual machine. Scanned data includes resource groups, virtual machines and their types, disks, extensions, IDs, network interfaces, regions, security groups, subnets, tags and more.

Azure resource group asset
Azure virtual machine asset

To scan a resource or virtual machine from Microsoft Azure, do the following:

  1. Make sure you meet the Azure scanning requirements.
  2. Submit your Azure subscription for scanning by hitting the Add Scanning Target button in the Scanning\Scanning Targets section of the web console. If you have multiple scanning servers, there will be a separate configuration tab for each server. When submitting your subscription, you will be asked to specify a scanning schedule. Optionally, you can filter the scanning target so that only specific resource groups are scanned, by submitting the groups with the Add Resource Group Filter button.
    Scanning Targets menu
    submitting Azure subscription for scanning
  3. Submit your Azure Active Directory (tenant) ID, application ID and application password as a credential in the Scanning\Scanning Credentials section of the web console. You can use the same credential for all Azure subscriptions by editing the Global Azure credential or submit a non-global credential with the Add new Credential button.
    Scanning Credentials menu
    adding an Azure credential
  4. If the credential you set up is not a global credential, map the credential to your subscription by hitting the + Credential button next to the subscription on the same page.
    mapping an Azure credential
  5. Wait for your scanning schedules to trigger or initiate an immediate scan by hitting the Scan now button next to the Azure target under Scanning\Scanning Targets. Azure scans do not visually show up in your scanning queue. They're processed silently in the background.
    Scan Now under Scanning Targets
  6. View scanned data by hovering over the Assets menu at the top of the web console and clicking on the Azure asset types. This takes you to overviews of your resource groups and virtual machines, from which you can click through to those assets' webpages as well. Alternatively, you can view scanned data using built-in or custom reports or using the Azure dashboard widget.
    Azure asset types
    Azure reports
    Azure widget

Related Articles