Cisco Cisco Firepower Management Center 2000

Seite von 1844
 
35-31
FireSIGHT System User Guide
 
Chapter 35      Introduction to Network Discovery
  Creating a Network Discovery Policy
Configuring Advanced Network Discovery Options
License: 
FireSIGHT
The Advanced tab of the network discovery policy allows you to configure policy-wide settings for what 
events are detected, how long discovery data is retained and how often it is updated, what vulnerability 
mappings are used for impact correlation, and how operating system and server identity conflicts are 
resolved. In addition, you can add host input sources and NetFlow devices to allow import of data from 
other sources.
Note that the database event limits for discovery and user activity events are set in the system policy. For 
more information, see 
To configure advanced settings:
Access: 
Admin/Discovery Admin
Step 1
Select 
Policies > Network Discovery
.
The Network Discovery Policy page appears.
Step 2
Click 
Advanced
The Advanced page appears.
Step 3
Edit advanced settings as needed:
  •
  •
  •
  •
  •
  •
  •
  •
Step 4
When you finish configuring settings, click 
Save
 to save the policy. 
Step 5
When the policy is complete and saved, apply the policy to put the updated settings into effect. For more 
information, see 
Configuring General Settings
License: 
FireSIGHT
The general settings control how often the system updates information in the network map and whether 
server banners are captured during discovery.
Capture Banners
Select this check box if you want the system to store header information from network traffic that 
advertises server vendors and versions (“banners”). This information can provide additional context to 
the information gathered. You can access server banners collected for hosts by accessing server details.