Views:

Monitor and configure connected Deep Discovery Inspector appliances from Network Inventory.

The Deep Discovery Inspector Appliances inventory on the Network Inventory screen provides an overview of connected Deep Discovery Inspector appliances within your environment. Deep Discovery Inspector appliances provide Network Security with network activity data, allowing for analysis, reporting, and sharing of detected suspicious objects. You can take several actions to manage and configure your environment.
Action
Description
Connect a Deep Discovery Inspector appliance
Connect a Deep Discovery Inspector appliance or deploy an appliance to AWS.
Manage plans and Virtual Analyzer images
Manage appliance plans and configure to an SFTP source to manage Virtual Analyzer images.
Click the Manage list and select one of the following:
  • Appliance plans: Create or manage plans, including configuration backup and configuration restore plans.
    Network Security configuration backup and restore is a scheduled, plan-based feature that operates across multiple appliances. It is separate from the manual Backup / Restore feature available in the Deep Discovery Inspector console, which exports and imports settings for a single appliance. For information about the Deep Discovery Inspector console Backup / Restore feature, refer to the Deep Discovery Inspector Administrator's Guide.
  • Virtual Analyzer image source: Configure an SFTP source and manage available images to deploy to the Deep Discovery Inspector appliance Virtual Analyzer.
View appliance details
View detailed information about the appliance including plans and Virtual Analyzer configuration.
Click the appliance identifier to view the Appliance Details screen.
Access the Deep Discovery Inspector console
Access the appliance console to manage the console directly.
Click Access under the Access console column to open the Deep Discovery Inspector console for the chosen appliance.
You can only access appliances that are part of your corporate network or that you can reach directly. Connect to the network the appliance is deployed on before attempting to access.
Disconnect a Deep Discovery Inspector appliance
Disconnect an appliance.
Click garbage_can_icon=GUID-20230329141313.png to disconnect a Deep Discovery Inspector appliance from Network Security.
Enable or disable a network sensor
Specify whether or not to share network data with Workbench to generate Network Analytics reports.
Select one or more appliances. Click Configure Network Sensor and select Enable Network Sensor to enable a network sensor. Select Disable Network Sensor to disable a network sensor.
Enable or disable Send to sandbox
Specify whether or not to send files to a virtual sandbox managed by TrendAI Vision One™ for analysis.
Enable Send to sandbox to allow the Deep Discovery Inspector appliance to submit suspicious files and other objects to a virtual sandbox for analysis. You can view the results in the Sandbox Analysis app. You can select multiple appliances to configure more than one at a time.
For more information about integrating your Deep Discovery Inspector sandbox functions with TrendAI Vision One™, see Sandbox options for connected Deep Discovery Inspector appliances.
Send to sandbox only supports Deep Discovery Inspector appliance version 6.8 and later.
You cannot have any other sandbox solutions configured on the appliance on which you want to enable Send to sandbox.
Configure your connection method or connect to a Service Gateway
Change how your Deep Discovery Inspector appliances connect to Network Security and whether to connect to a Service Gateway as a source for services, such as ActiveUpdate.
Select one or more appliances and click Configure Connection Settings.
Back up and restore appliance configurations
Centrally create, download, and apply full configuration backups for your connected Deep Discovery Inspector appliances.
Select one or more appliances and click System MaintenanceBackup / Restore. On the Backup / Restore screen, you can do the following:
  • On the Backup tab, optionally type a description to help you identify the backup later, and then click Create Backup. Network Security triggers a configuration export on each selected appliance and stores the resulting package in the central backup repository. The job status appears in the Backup History table.
  • In the Backup History table, click Download to save an encrypted copy of a stored backup to your local computer, or click Delete to permanently remove a backup from the central repository.
  • On the Restore tab, select From central repository to choose a backup stored in Network Security, or select Upload backup file to upload a previously downloaded backup package. Select the target appliance, review the configuration scope, and click Restore. Restore progress appears in the Restore History table.
Restoring a configuration overwrites current appliance settings and restarts services on the appliance. Schedule the restore during a maintenance window to avoid traffic monitoring gaps.
The source and target appliances must be on the same Deep Discovery Inspector version.
Central configuration backup and restore requires Deep Discovery Inspector appliance version 6.9 and later.
The Network Inventory screen and available actions may vary if you have connected your Deep Discovery Inspector appliances to Network Inventory using Deep Discovery Director. For more information, see Network Inventory with Deep Discovery Director.