Support Level: Tier 2 (Compatible Platform)
Microsoft Azure is categorized as a Tier 2 (Compatible) deployment platform under Outpost24's Supported Deployment Platforms for RC-Scanners.
-
Software Support: Outpost24 Support provides best-effort assistance for RC-Scanner software functionality once the VM has successfully booted and meets minimum requirements.
-
Infrastructure & Cloud Scope: Cloud-specific infrastructure configuration, disk image conversion, and Azure import processes remain the customer's responsibility.
Purpose
This article describes how to deploy RC-Scanner as a virtual appliance in Microsoft Azure. It covers preparation of the installation image in Hyper-V, upload of the fixed VHD to Azure, virtual machine creation, SSH access, and bootstrap registration in the OUTSCAN Portal.
Introduction
Azure does not boot the RC-Scanner ISO directly for this deployment method. First install the ISO in a Generation 2 Hyper-V virtual machine, then convert the resulting virtual disk to a fixed VHD. Upload the VHD as a managed disk and create an Azure virtual machine from that disk.
The deployment consists of five phases:
-
Prepare the RC-Scanner VHD in Hyper-V.
-
Upload the VHD as an Azure managed disk.
-
Create and configure the Azure virtual machine.
-
Connect to the VM over SSH and change the default password.
-
Run the bootstrap command and verify registration in the OUTSCAN Portal.
Important: Use a Generation 2 VM throughout the preparation and Azure deployment process. Azure requires a fixed .vhd file for this workflow; do not upload the dynamic .vhdx file.
Prerequisites
-
Access to the latest RC-Scanner ISO from the OUTSCAN Portal, under Configurations → RC SCANNER.
-
Microsoft Hyper-V with permission to create and manage virtual machines.
-
A Microsoft Azure account with permission to create resource groups, managed disks, virtual machines, networking resources, and SSH access.
-
Microsoft Azure Storage Explorer installed and available. Download it from Microsoft Azure Storage Explorer.
-
PowerShell with permission to run Hyper-V disk-conversion commands, or access to the Hyper-V disk-editing interface.
-
An SSH client or terminal.
-
Network access that meets the RC-Scanner firewall requirements. Review Firewall Rules RC-Scanners.
-
RC-Scanner sizing information. Review the RC-Scanner Dimensioning Guide before selecting the Azure VM size.
Phase 1: Prepare the VHD in Hyper-V
This phase creates a Generation 2 Hyper-V VM, installs RC-Scanner from the ISO, and converts the disk to a fixed VHD that Azure can use.
Create the virtual machine
-
Download the latest RC-Scanner ISO from the OUTSCAN Portal.
-
Open Hyper-V Manager.
-
Select New → Virtual Machine.
-
Configure the wizard with the following settings:
|
Setting |
Recommended value |
|---|---|
|
Name |
|
|
Generation |
Generation 2 |
|
Memory |
At least 2048 MB; 4096 MB recommended for preparation |
|
Network |
An active virtual switch with DHCP, such as Default Switch |
|
Virtual disk |
30 GB |
|
Installation media |
The downloaded RC-Scanner ISO |
-
Finish the wizard to create the VM.
Configure Secure Boot
-
Right-click the new VM and select Settings.
-
Select Security.
-
Ensure Enable Secure Boot is selected.
-
Set the template to Microsoft UEFI Certificate Authority.
-
Select Apply, then OK.
The Microsoft UEFI Certificate Authority template is required for the Debian-based RC-Scanner installer to boot correctly in a Generation 2 VM.
Run the unattended installation
-
Right-click the VM and select Start.
-
Open the VM console by selecting Connect.
-
Allow the installer to run. It installs the Debian base operating system and RC-Scanner packages automatically.
-
Wait for the VM to shut down when installation is complete.
-
Start the VM again and confirm that it reaches the login prompt.
-
Shut down the VM before converting the disk.
Convert the disk to a fixed VHD
Azure requires a fixed VHD. Do not upload the dynamic .vhdx file.
PowerShell
Open PowerShell as Administrator and run:
Convert-VHD -Path "C:\Path\To\RC-Scanner-Prep.vhdx" -DestinationPath "C:\Path\To\RC-Scanner-Azure.vhd" -VHDType Fixed
Hyper-V Manager
-
Select Edit Disk….
-
Locate the Hyper-V
.vhdxfile. -
Select Convert.
-
Choose VHD as the disk format.
-
Choose Fixed size as the disk type.
-
Select the destination path and complete the wizard.
Use the resulting RC-Scanner-Azure.vhd file in the next phase.
Phase 2: Upload the VHD to Azure
Create or select a resource group
-
Sign in to the Azure Portal
https://portal.azure.com/. -
Create a resource group if one does not already exist, or select an existing resource group approved for the deployment.
-
Record the resource group and Azure region. Use the same region for the managed disk and virtual machine.
Upload the VHD as a managed disk
-
Open Microsoft Azure Storage Explorer.
-
Navigate to Disks.
-
Select Upload.
-
For Source VHD, select the fixed
RC-Scanner-Azure.vhdfile. -
Set OS Type to Linux.
-
Select the required Azure Location.
-
Set Hyper-V generation to V2.
-
Start the upload and wait for it to complete.
Upload duration depends on the VHD size and available bandwidth. Do not close Storage Explorer or modify the source file while the upload is running.
Phase 3: Create the Azure virtual machine
Locate the uploaded disk
-
Open the selected resource group in the Azure Portal.
-
Locate and open the newly created managed disk.
-
Select Create VM.
Configure the virtual machine
-
Enter a descriptive Virtual machine name, such as
RCSA001. -
For Availability options, select No infrastructure redundancy required, unless the deployment design requires another option.
-
If infrastructure redundancy is required, confirm that the disk and selected VM configuration support the required availability zone or set.
-
For Licensing, select Other.
-
Select a VM size that meets the approved RC-Scanner Dimensioning Guide.
-
Configure the virtual network, subnet, IP addressing, and security rules according to the approved network design.
-
Allow SSH access only from approved administration networks. Review Firewall Rules RC-Scanners.
Review and create
-
Select Review + create.
-
Review the validation results and configuration summary.
-
Select Create.
-
When deployment completes, select Go to resource.
Phase 4: Connect over SSH
Record the VM IP address
-
Open the VM resource overview in the Azure Portal.
-
Select Connect.
-
Record the destination VM IP address appropriate for your network design.
Connect and change the default password
Use an SSH client or terminal to connect:
ssh rcscanner@<destination-vm-ip>
-
Username:
rcscanner -
Initial password:
outpost24
At first login, change the initial password immediately. Enter the initial password when prompted, then provide and confirm a new password. Store the new credential according to your organization's password-management policy.
Please note that when you have changed your password you will be disconnected and need to reconnect using the new credentials.
Never leave the initial password active on a deployed scanner. Do not include passwords, tokens, private keys, or other credentials in documentation, tickets, scripts committed to source control, or chat messages.
Phase 5: Complete bootstrap registration
Retrieve the one-time token
-
Sign in to the OUTSCAN Portal.
-
Open Configurations → RC SCANNER.
-
Select the green + button.
-
Select Continue.
-
Copy the displayed one-time token.
Run the bootstrap command
In the SSH session, run:
rc-scanner-bootstrap --token <your-token>
For unattended setup, run:
rc-scanner-bootstrap --token <your-token> --headless
During an interactive installation, follow the prompts and press F3 when requested.
Verify registration
-
Return to Configurations → RC SCANNER in the OUTSCAN Portal.
-
Locate the new scanner.
-
Confirm that its status changes from Initializing to Connected.
-
Begin scanning only after the scanner shows as connected.