# Check the preview and access requirements for portal-based WAC management

> What must be approved before managing an Arc-enabled server with Windows Admin Center in Azure?

- Canonical URL: https://update.dsesecurity.com/updates/dse-20260908-203-check-the-preview-and-access-requirements-for-portal-based-wac-management/
- Publisher: Detection Systems & Engineering (DSE Security)
- Author: DSE Security Editorial Team
- Published: 2026-09-08T18:13:48+00:00
- Modified: 2026-09-08T18:29:33+00:00
- Last reviewed by DSE: 2026-09-08
- Resource type: Guide
- DSE priority: Information
- Topics: Business Continuity, IT
- Reading time: 2 minutes

## What you need to know

What must be approved before managing an Arc-enabled server with Windows Admin Center in Azure?

## Potentially affected

Administrators evaluating Windows Admin Center in the Azure portal for Arc-enabled hybrid servers.

## DSE recommendation

Document the proposed management operations and obtain the environment owner's decision on preview use.

## Article

## Source facts

The cited Microsoft guidance labels Windows Admin Center in the Azure portal as a preview. It describes managing an individual hybrid Windows Server machine without opening inbound firewall ports. The machine must already be connected to Azure Arc and have the WAC agent installed. Installing the extension requires one of the documented Azure roles. [Microsoft Learn](https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/manage-arc-hybrid-machines).

## Applicability

Check the current preview status, regional availability, server requirements, and role requirements in the official page before deployment. Identify the target Arc resource and the person authorized to install its management extension. Separate acceptance of a preview feature from ordinary server onboarding.

## DSE recommendation

Document the proposed management operations and obtain the environment owner’s decision on preview use. Assign the narrowest suitable documented role and verify the target resource scope with the Azure administrator. Pilot the extension on one approved machine, recording how operators will reach the server if the portal path is unavailable. Include extension ownership and removal criteria in the management plan.

## Verification

Verify the extension state and open the intended management tools against the selected server. Confirm an authorized operator can perform the agreed task and an unauthorized identity cannot. Record connectivity and permission failures separately. Retain the observed preview version and revisit acceptance when the feature or its availability changes.

## Official references

[Microsoft Learn: Manage Azure Arc-enabled Servers using Windows Admin Center in Azure](https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/manage-arc-hybrid-machines). Source reviewed September 8, 2026.

## Primary reference

- Name: Manage Azure Arc-enabled Servers using Windows Admin Center in Azure
- Authority: Microsoft Learn
- URL: https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/manage-arc-hybrid-machines
- Source publication date: Not stated by the source

## Citation and use

Preferred citation: “Check the preview and access requirements for portal-based WAC management,” DSE Security, https://update.dsesecurity.com/updates/dse-20260908-203-check-the-preview-and-access-requirements-for-portal-based-wac-management/
Publishing principles: https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/
Usage and citation policy: https://update.dsesecurity.com/usage/
Copyright © 2026 Detection Systems & Engineering. All rights reserved.
