An Asset Discovery rule can have more than one condition, and each condition can have one or more constraints. When Safeguard for Privileged Passwords runs the discovery job, it finds all assets that meet all of the search conditions.
Navigate to:
- desktop client: Navigate to Administrative Tools | Discovery | Asset Discovery | (add or edit Asset Discovery job) | Asset Discovery dialog | Rules tab | Asset Discovery Rule dialog | Add Condition.
- web client: Asset Management | Discovery | Assets | (add or edit Asset Discovery job) | New Asset Discovery Job dialog | Asset Discovery Rules tab | (add asset discovery rule) | New Asset Discovery Rule dialog | Conditions tab| (add condition).
Add Find All condition
- In the Condition dialog, in Find By, choose Find All.
-
If you are setting up an Asset Discovery job for a directory, Browse the Filter Search Location to select a container within the directory to search for assets. Select Include objects from sub containers to include objects from sub containers or clear the check box to exclude child objects from discovery.
-
Click Preview to test the conditions you have configured and display a list of assets Safeguard for Privileged Passwords will find in the directory or network you specified based on the conditions entered.
- Click OK.
Add LDAP Filter (for LDAP or Active Directory) condition
Search base limits the search to the defined branch of the specified directory, including sub containers if that option is selected. This condition is only available for a Directory discovery job (LDAP or Active Directory directories).
- In the Condition dialog,
- Find By: Choose LDAP Filter and enter the search criteria to be used.
-
Filter Search Location: Browse to select a container within the directory to search for assets.
TIP: Do not select the Directory Root for Asset Discovery jobs.
- Include objects from sub containers: Optionally, select this check box to search for assets in sub-containers.
- Click Preview to test the conditions you have configured.
- Click OK to save your selections.
Add Group for a Directory condition
This condition is only available for a Directory discovery job.
- In the Condition dialog:
- Find By: Choose Group.
- Click Add to launch the Group dialog.
-
Contains: Enter a full or partial group name and click Search. You can only enter a single string (full or partial group name) at a time.
- Filter Search Location: Browse to select a container to search within the directory.
- Include objects from sub containers: Select this check box to include child objects.
- Select the group to add: The results of the search displays in this grid. Select one or more groups to add to the discovery job.
-
Click Preview to test the conditions you have configured and display a list of assets Safeguard for Privileged Passwords will find in the directory or network you specified based on the conditions entered.
- Click OK to save your selections.
( desktop client) To add Constraints condition
- In the Condition dialog, in Find By, choose Constraints.
- To change the Filter Search Location, click Browse and select the search location that is the scope of the search. Network Scan Asset Discovery jobs don't support the search bases settings.
-
(Optional) Select Include objects from sub containers to discover assets in sub-containers.
- To apply constraints (search criteria):
-
Select a property:
- Name
- Description
- Network Address
- Operating System
-
Operating System Version
NOTE: For Network Scan, you can only apply constraints on the information the network finds, which is Name and Operating System.
-
Select an operation:
- Equals
- Not Equals
- Starts With
- Ends With
- Contains
- Does Not Contain ( desktop client only: This is not supported for a network scan)
- In the text box, type a value of up to 255 characters. The search is not case-sensitive and does not allow wild cards.
-
- Click Preview to test the conditions you have configured and display a list of assets Safeguard for Privileged Passwords will find in the directory or network you specified based on the conditions entered.
- You can add or delete search constraints:
- Click Add to additional constraints to your search criteria.
- Click Delete to remove the corresponding constraint from your search criteria.
- Click OK to save your selections.
- In the Condition dialog, in Find By, choose Constraints.
- To change the Filter Search Location, click Browse and select the search location that is the scope of the search. Network Scan Asset Discovery jobs don't support the search bases settings.
- To apply constraints (search criteria):
-
Select a property:
- Name
- Description
- Network Address
- Operating System
-
Operating System Version
NOTE: For Network Scan, you can only apply constraints on the information the network finds, which is Name and Operating System.
-
Select an operator:
- Equals
- Does Not Equal
- Starts With
- Ends With
- Contains
- Does Not Contain
- In the Value field, type a value of up to 255 characters. The search is not case-sensitive and does not allow wild cards.
-
- Click Preview to test the conditions you have configured and display a list of assets Safeguard for Privileged Passwords will find in the directory or network you specified based on the conditions entered.
- You can add or delete search constraints:
- Click Add to additional constraints to your search criteria.
- Click Delete to remove the corresponding constraint from your search criteria.
- Click OK to save your selections.