Use agentless connections

Add an asset in agentless mode

  1. Click on Assets management > Agentless connections
  2. Click on Add
  3. Fill the form. An helper is displayed on the right hand side of the page, depending on the type of connection selected.

    • “Access protocol” refers to the chosen type on agentless connection;
    • “Source” refers to the Cyberwatch machine that will initiate the connection;
    • “Address” refers to the hostname/IP address of the target;
    • Fields “Login” / “Password” / “Key” refers to the authentication parameters of the connection. You may instead select a set of stored credentials.
  4. Confirm with the “Save” button

You can reuse the same credential set across multiple connections using stored credentials. To manage them, go to the “Stored credentials” page, accessible from the sidebar.

Status of agentless connections

The agentless connections view is the full inventory of agentless connections created in your Cyberwatch interface.

This view provides information to help understand what went possibly wrong when adding a new agentless connection and what kind of rights has Cyberwatch been given for each agentless connection:

  • the Last communication column indicates the last time Cyberwatch has connected to the asset to perform an action on it;
  • Last connection error indicates the last error encountered when connecting to the asset, whether the connection is valid or not Cyberwatch keeps the last error message for debugging purposes;
  • Mode column indicates the status of the agentless connection, three possible cases:
    • a red cross means the agentless connection is not valid and Cyberwatch cannot connect to the asset, this is always accompanied with a Last connection error that helps understand why the connection failed;
    • green shield and yellow calendar icons mean the connection is valid and the asset is in “Detection only” mode. When connecting to the asset, Cyberwatch identified it does not have sudoers rights: making only scanning possible;
    • green shield and green calendar icons mean the the connection is valid and Cyberwatch has full rights to scan the asset.

Automatic refresh of agentless connections

By default, Cyberwatch will automatically try to refresh existing agentless connections currently in error.

For new connections, they will be automatically refreshed every 6 hours for the first 3 days after their creation.

After that, all existing connections in error will be tried once a week.

Delete one or more agentless connection(s)

  1. Click on Assets management > Agentless connections
  2. Select the agentless connections you want to delete.
  3. Click on the “Bulk actions” button.
  4. Click on the “Delete button” in the drop-down list and confirm the deletion in the popup.

Deleting agentless connections this way will also delete the associated asset.

For more details on how to set up agentless connections and prepare your assets, consult documentation sections below:

