Getting started

How do I install a Scanner Appliance in Azure?

Share your Azure subscription ID with us to share the Scanner Appliance image with your account.

To install a new Scanner Appliance, simply follow these step-by-step instructions.

Before you begin the installation process, we highly recommend that you take a look at the requirements. This step will ensure a smooth and successful installation of the Scanner Appliance.

System requirements

The system requirements needs to be set prior to booting the Scanner Appliance for the first time. Read about the system requirements here:

https://support.holmsecurity.com/knowledge/what-are-the-system-requirements-for-the-scanner-appliance

Firewall requirements

To ensure proper communication between the Scanner Appliance and Security Center, it is important to review the following information:
https://support.holmsecurity.com/knowledge/what-are-the-firewall-settings-for-scanner-appliance

Preparation for the Scanner Appliance in Security Center

  1. Ensure that you have added a new Cloud Azure Scanner Appliance in Security Center, where a token will be generated.
  2. Go to Scanner Appliance 
  3. Click Add Appliance -> Cloud 
  4. Set a name for your Scanner Appliance and choose Azure or AWS.
  5. Click Next twice.
  6. Add NTP Servers (optional).
  7. Click Finish
  8. Note down the token you received from the Scanner Appliance list. It will be used when initiating the virtual machine in Azure.

Set up the Scanner Appliance in Azure

  1. Log in to Azure Portal.
  2. Go to Virtual machines and click + Create > Azure virtual machine
  3. Fill in the following in the Basic menu:
    • Select your Resource group.
    • Type in your Virtual machine name
    • Make sure of the selected Region.


    • Notice regarding public inbound ports: By default, port 22 SSH is enabled.
  4. Under Security type,  select Standard.
  5. Under Image, click See all images.
    1. Search for Holm and click on View private plans to select the image that we shared with your environment earlier.
    2. Choose the image named Holm Security Cloud Scanner Appliance (preview) and click select.

  6. Select your image size. Ensure the image size meets our requirements outlined in step 3.
  7. By default, the virtual machine will be created in a new Virtual Network (VNET).
    If you want to use your own VNET, then click on Networking and select your VNET for the virtual machine.


  8. Click Review + Create, wait for Azure to review and for the validation to pass, and click Create.
  9. A window will pop up about a new key pair has been generated. Click on Download private key and create resource.
  10. After the Scanner Appliance has been deployed, click on your Appliance, scroll down to Help > Serial Console, and wait for the console UI to show up.
  11. In the Appliance console UI choose:

    1. Configuration > Network and press enter. Now you need to fill out the following values manually and save by pressing F11 (Fn+F11).
      1. IPv4 address
      2. IPv4 network
      3. IPv4 gateway
      4. IPv4 dns-nameservers
      5. IPv6 address
      6. IPv6 network
      7. IPv6 gateway
      8. IPv6 dns-nameservers


    2. Then choose the option Probe registration, input the token (located under the Scanner Appliance section in Security Center) and press F11 (Fn+F11) to confirm the registration.

  12. Reboot the appliance.
  13. In Security Center, you can check the activation to make sure the scanner was registered correctly.
  14. Done!