> ## Documentation Index
> Fetch the complete documentation index at: https://docs.levelblue.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Redeploying an Azure Sensor Using the Same IP

> Step-by-step instructions for redeploying a USM Anywhere Sensor in Microsoft Azure while conserving the same public and private IP addresses.

| **Role Availability** | Read-Only | Investigator | Analyst | **Manager** |
| --------------------- | --------- | ------------ | ------- | ----------- |

Use this procedure to redeploy your **USM Anywhere Sensor** in Microsoft Azure while retaining the same public and private IP addresses.

This process ensures that your existing integrations and data sources continue working without requiring IP changes.

## Step 1. Identify the Sensor in the USM Anywhere UI

1. Log in to the **USM Anywhere** console.
2. Go to **Data Sources > Sensors**.
3. Identify the sensor you want to redeploy.

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-ip.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=643822982ff31167f91ad04ba49315b1" alt="Azure Sensor Ip Pn" width="2530" height="207" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-ip.png" />
4. Record its **public** and **private IP addresses** for later use.

## Step 2. Gather Backup Information from the Sensor CLI

1. Connect to the **sensor console** using SSH or Azure Serial Console.
2. From the **Maintenance** menu, select **Get Backup Information** and press **Enter**.

   <img src="https://mintcdn.com/levelblue-5324744e/JttNYaikKbN1las-/images/usm-anywhere/maintenancemenu.webp?fit=max&auto=format&n=JttNYaikKbN1las-&q=85&s=fa8e87e8f5f53e1fd00716476541f8c6" alt="Maintenancemenu Web" width="520" height="272" data-path="images/usm-anywhere/maintenancemenu.webp" />
3. Copy the **FQDN** and **BackupID**, and save them for later use.

   <img src="https://mintcdn.com/levelblue-5324744e/2Z20kz1UCl1nEgqm/images/getbackupinfo.avif?fit=max&auto=format&n=2Z20kz1UCl1nEgqm&q=85&s=ebd1b89289ec7ec4d577bfe293a67c90" alt="Getbackupinfo Avi" width="560" height="148" data-path="images/getbackupinfo.avif" />

## Step 3. Delete the Existing Sensor VM While Preserve Networking Resources

1. In the **Azure Portal**, open the existing sensor **Virtual Machine**.

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-select-vm.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=81b25b1cfb91dd7495dfa6bc0b9b05bd" alt="Azure Select Vm Pn" width="1028" height="764" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-select-vm.png" />
2. Note the following configuration details:

   * **Resource group**
   * **Virtual network/Subnet**
   * **Network Security Group (NSG)**
   * **Network Interface (NIC)**
   * **Public IP Address**

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-network-settings.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=a2f4e0f4b9853de174f9d4727e90b7da" alt="Azure Network Settings Pn" width="1643" height="675" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-network-settings.png" />
3. Delete the **VM** and its **OS/Data disks**, but **do not delete**:

   * The **Network Interface (NIC)**
   * The **Public IP Address** resource

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-publicip.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=4f1bce17f1abb1aac5822cf15ee77c60" alt="Azure Publicip Pn" width="1431" height="857" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-publicip.png" />

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-delete-vm.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=51ff5243aa51932e048de2656de14f92" alt="Azure Delete Vm Pn" width="1095" height="970" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-delete-vm.png" />

<Note>
  At this point, the sensor will appear as **Connection Lost** in the USM Anywhere UI. This is expected behavior.
</Note>

<img src="https://mintcdn.com/levelblue-5324744e/uJPilGC2j4jtVjGM/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-offline.png?fit=max&auto=format&n=uJPilGC2j4jtVjGM&q=85&s=5e3672339081c324fe6d76378285f7b1" alt="Azure Sensor Offline Pn" width="2353" height="163" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-offline.png" />

## Step 4. Deploy a New Azure Sensor VM

1. Go to the [USM Anywhere Sensor Downloads](https://www.levelblue.com/products/usm-anywhere/sensor-downloads) page and select the download link of the Azure Sensor.

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-download.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=c777e5b22b468a08f61d127d3566e33e" alt="Azure Sensor Download Pn" width="1175" height="723" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-download.png" />
2. On the page, review the details of the license and click **Create**.

   This takes you to the Create a virtual machine page, which guides you through the steps for deploying the USM Anywhere Sensor VM.

   <img src="https://mintcdn.com/levelblue-5324744e/adIUcnBkryqG7nEE/images/usm-anywhere/deployment-guide/azure/azure-license-page.webp?fit=max&auto=format&n=adIUcnBkryqG7nEE&q=85&s=d87a0bb8152d11b8bc7343bc2a09a531" alt="Azure License Page Web" width="1020" height="444" data-path="images/usm-anywhere/deployment-guide/azure/azure-license-page.webp" />
3. During configuration:

   * Assign the **same Virtual Network** and **Subnet** as the original sensor.
   * Reuse the **same Security Group** settings.

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-create-network.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=8833afd14a8281b0e38394c3c1c29299" alt="Azure Sensor Create Network Pn" width="1033" height="1014" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-create-network.png" />

   <Warning>
     **Important:** LevelBlue recommends using sysadmin as the username. If you use a different name, you will need to "sudo up" to access the sensor console. See [Checking Connectivity to the Remote Server](../admin/remote-support-connectivity) for more information.
   </Warning>
4. Complete the creation by selecting **Create**.

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-create-review.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=2e450b138ce0e37b3cf16e0c0fde40b9" alt="Azure Sensor Create Review Pn" width="1176" height="1037" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-create-review.png" />

   The new sensor will deploy with a **different temporary IP address**.

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-ip-different.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=de594e3934ce11fe786a76ce4d451e61" alt="Azure Sensor Ip Different Pn" width="1642" height="850" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-ip-different.png" />

## Step 5. Stop the New Sensor VM and Swap the Network Interface

1. In the **Azure Portal**, go to the new sensor VM and select **Stop** to deallocate it.

   <img src="https://mintcdn.com/levelblue-5324744e/uJPilGC2j4jtVjGM/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-stop.png?fit=max&auto=format&n=uJPilGC2j4jtVjGM&q=85&s=b7fff8dab0cd0f12a3c8642bb26bda83" alt="Azure Sensor Stop Pn" width="1643" height="638" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-stop.png" />
2. From the resource list, **select** the **original NIC** that retains the old IP address.

   <img src="https://mintcdn.com/levelblue-5324744e/cI0E6TZSMdj1BSGy/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-attach-network-interface.png?fit=max&auto=format&n=cI0E6TZSMdj1BSGy&q=85&s=40503e011b4fbd2e3cae21cf2d98fc22" alt="Azure Sensor Attach Network Interface Pn" width="1418" height="753" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-attach-network-interface.png" />
3. Attach this **preserved NIC** to the new VM as **Primary**.

   <img src="https://mintcdn.com/levelblue-5324744e/uJPilGC2j4jtVjGM/images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-select-network-interface.png?fit=max&auto=format&n=uJPilGC2j4jtVjGM&q=85&s=8337741d402ab9a2514003accb16af07" alt="Azure Sensor Select Network Interface Pn" width="1643" height="762" data-path="images/usm-anywhere/deployment-guide/azure/azure-same-ip/azure-sensor-select-network-interface.png" />
4. Open the **Networking** blade for the new VM and **detach** its temporary NIC.
5. Start the VM again.

<Note>
  If the VM fails to start due to NIC conflicts, ensure the old NIC is detached from any previous VM and retry.
</Note>

## Step 6. Restore Sensor Backup

1. Open your virtualization management console and connect to the USM Anywhere Sensor virtual machine (VM).

   <Warning>
     **Important:** Alternatively, you can open an SSH session to the sensor VM. When using an SSH session, the default username is *sysadmin*.

     If you are accessing a USM Sensor through SSH and you specified a username other than the default (*sysadmin*) for your SSH access, you must use the following commands at the command line to "sudo up" and access the sensor console:

     ```
     # sudo su – sysadmin
     ```
   </Warning>
2. From the USM Anywhere Sensor console System Menu, select **Maintenance** and press **Enter**.

   <img src="https://mintcdn.com/levelblue-5324744e/Q_BhWHm3qHRMbGha/images/usm-anywhere/systemmenu.webp?fit=max&auto=format&n=Q_BhWHm3qHRMbGha&q=85&s=aa0be0e53b21b1051d996ef64084625e" alt="Systemmenu Web" width="520" height="237" data-path="images/usm-anywhere/systemmenu.webp" />
3. From the Maintenance menu, select **Restore Backup** and press **Enter**.

   <img src="https://mintcdn.com/levelblue-5324744e/JttNYaikKbN1las-/images/usm-anywhere/maintenancemenu-restorebackup.webp?fit=max&auto=format&n=JttNYaikKbN1las-&q=85&s=45d3eebcf31cc03b4570fab45c25d408" alt="Maintenancemenu Restorebackup Web" width="519" height="270" data-path="images/usm-anywhere/maintenancemenu-restorebackup.webp" />
4. Enter the FQDN and press **Enter**
5. Enter BackupID and press **Enter**. A progress bar will appear. Once it has completed, a dialog box confirming changes have been applied will appear.

   <img src="https://mintcdn.com/levelblue-5324744e/z8PrFh3-d5s1AvEf/images/applychangesdialogbox.jpg?fit=max&auto=format&n=z8PrFh3-d5s1AvEf&q=85&s=ce68b42ba9a8403d1a941480416b300e" alt="Applychangesdialogbox Jp" width="480" height="170" data-path="images/applychangesdialogbox.jpg" />
6. Press **Enter**. Your sensor will now be restored.

## Step 7. Verify Connectivity and Log Ingestion

1. In **USM Anywhere**, confirm the redeployed sensor shows **Connected** status.
2. Check that events and alarms are appearing normally.
3. Verify that the sensor is forwarding logs and communicating with BlueApps and integrations as expected.

## Troubleshooting

| Issue                                  | Cause                                        | Resolution                                                           |
| -------------------------------------- | -------------------------------------------- | -------------------------------------------------------------------- |
| **NIC cannot be detached or attached** | VM is still running or allocated             | Stop and deallocate the VM before swapping NICs                      |
| **IP changed unexpectedly**            | NIC IP allocation is set to Dynamic          | Edit the NIC IP configuration and set it to Static                   |
| **No data ingestion after restore**    | Firewall or NSG rules blocking communication | Check port 443 outbound and confirm required endpoints are reachable |

## Related Topics

* [Redeploying a Sensor](/documentation/usm-anywhere/deployment-guide/admin/redeploy-sensor)
* [Data Sources and Log Collection](/documentation/usm-anywhere/deployment-guide/setup/about-log-management)
* [Setup Wizard](/documentation/usm-anywhere/deployment-guide/setup/setup-wizard)
