Creating a Device Enrichment Profile
To create a Device Enrichment profile:
- Go to Virtual Security Analyst > Device Enrichment.
- In the toolbar, click Create New. The Add New Device Enrichment Configuration page opens.
- Configure the profile settings.
Enable Device Configuration
Disable and enable the profile
Profile Name
Unique identifier for the Microsoft Active Directory Connection Profile
Microsoft Active Directory Connection Settings
Sever name/ IP
Enter either the IP address of the windows AD server or domain name.
Enable SSL
SSL port and protocol to be use when selected
Base DN
The starting point of the LDAP Server for user authentication within the directory. For example,
DC=example-domain, DC=comBind DN
The LDAP user and its LDAP directory tree location for binding. For example,
CN=fndr_svc,CN=testUser, DC= example-domain,DC= com.Bind Password
The password for the LDAP user account for binding. For example,
DC= example-domain,DC= com.Search Scope
The method of retrieving the information from the tree:
Base: only retrieve information from the base level of the directory tree specified in search base
One Level: only retrieve information from the search base and one level down
Subtree: retrieve everything underneath the specified search base
Search Base
The starting point of the directory tree for retrieving information
DNS Server Settings
DNS Server
DNS Server is required as part of the enrichment process involved querying DNS server with hostnames to retrieve current IP address.
Automation
Scheduling
- Every: the enrichment cycle will be preformed once right after the profile is saved. The next cycle will be run after the amount of hours user input
- Daily: the enrichment cycle will start every day at the input time
- Weekly: the enrichment cycle will start weekly at the input time.
- Click OK.
Active Directory Profile Actions
Use the Active Directory Profile Actions in the toolbar to test the connect or run the Device Enrichment Profile.
| Active Directory Server Ping Test |
Ping the Active Directory (AD) server and port in the Device Enrichment Profile. |
| Active Directory Server Connection Test |
Verify the Microsoft Active Directory Connection Settings by attempting to connect the AD server. |
| Active Directory Server Manual Run |
Execute the selected Device Enrichment Profile . The result will be shown as a notification on the bottom left. |