You are here:
Key Terms in Discovery
Get familiar with essential terms before you start using discovery.
Required Editions
| Available in: Lightning Experience |
| Available in: Enterprise, Performance, and Unlimited Editions with Agentforce IT Service that have Discovery enabled. |
| Term | Description |
|---|---|
| Discovery Application | A lightweight service installed on a Windows host that performs agentless scans within your network. Discovery application uses native protocols like WMI, SSH, and SNMP to identify and profile devices. For example, installing a discovery application inside your data center to scan subnets for servers and network devices. |
| Discovery Agent | A program deployed on endpoint devices to collect configuration and software data. Agents send the collected data to the Discovery application, which then updates the Configuration Management Database (CMDB). Use agents to scan devices that aren’t reachable through network scans, such as laptops used outside the corporate network. |
| Credential Manager | A secure vault that stores reusable credentials for discovery scans. Credential manager supports SSH, SNMP, WMI, and cloud account credentials. For example, create an AWS credential once and reference it in multiple discovery targets. |
| Credential Type | The protocol or authentication method supported by discovery. Common types include WMI for Windows, SSH for Linux and macOS, SNMP for network devices, and API keys for cloud accounts. |
| Discovery Target | A defined source that discovery scans to collect asset data. Targets can include IP ranges, cloud providers like AWS or Azure, or endpoint management systems like Intune. For example, define a target for your Azure environment to discover all virtual machines under a subscription. |
| Discovery Probe | A prebuilt connector that determines how data is collected from a specific type of target. Each probe uses relevant protocols and queries to identify devices and applications. For example, the AWS cloud discovery probe collects EC2 and RDS data from your AWS account. |
| Scan Job | A scheduled operation that runs a discovery scan against one or more targets. Each scan job records status, duration, and number of assets discovered. For example, you can run a daily scan job to detect new virtual machines in AWS. |
| Process Job | A background task that processes discovery data after a scan gets completed. Process jobs identify relationships between discovered assets, detect communication patterns, and update related records in CMDB. |
| Agentless Scanning | A method that uses network protocols and credentials to scan devices without installing agents. Suitable for servers, routers, and switches inside a corporate network. |
| Agent-Based Scanning | A method that uses installed agents on endpoint devices to collect detailed configuration and software data. Ideal for end-user compute devices that aren’t always connected to the corporate network, such as laptops and remote workstations. |
Эта статья решила вашу проблему?
Оставьте свой отзыв, чтобы мы могли стать лучше!

