KUDU Console => Process Explorer, we can see option for SCM.
WEBSITE_DISABLE_SCM_SEPARATION key with value true in Azure Application Settings.
I can see the SCM in Process Explorer is not visible

We can restrict the access to KUDU or SCM in Networking Section of the Azure App Service.
Navigate to Azure Portal => Your Azure Web App Service => select Networking under Settings section.
Under Inbound Traffic, select Access restriction.

WebAppName.scm.azurewebsites.net tab and click + Add rule.source settings => in IP Address Block , provide the set of IP Address which you want to block the SCM.
