Software Secure Workload
Activity Configure

Inventory

To work with inventory, click Organize > Scopes and Inventory in the left navigation bar.

Inventory Search

All inventory detected on the network is searchable. To search inventory, use the Search Inventory button. Each inventory item is uniquely identifiable by IP and VRF and can be used for performing a search. A service inventory item is not searchable using its IP Address. Use any of the User Labels associated to the service such as user_orchestrator_system/service_name for searching a service inventory. After a host has been found, you can view detailed information about the host on the host profile page.

Inventory Building Blocks

  1. Root Scope

    • Root of the scope hierarchy under a given tenant

    • Provides a logical separation for L3 address domains

  2. Scope

    • Inventory container defined by dynamic query

    • Foundation for hierarchical policy model

    • Anchor point for policy, RBAC, and filter configuration

  3. Filter

    • Flexible construct based on dynamic inventory query

    • Anchor point for intent definition, provided services, and policy definition


     

    Includes all IP addresses from partners and anything that is communicating in your environment. Whether they have an agent on them or not, you should define what they are through label.

Label Planning Considerations

  1. Source of data

    • Networks - IPAM? Routing tables? Spreadsheet?

    • Hosts - CMDB, Hypervisor, Cloud, App Owners?

  2. Accuracy of data

  3. How dynamic the data is and how it will be updated.

    • Manual Upload?

    • API Integration?

  4. Start with the basics and grow.

    • Use network labels to build high-level scope structure.

    • Use host labels to build more detailed scope structure at app level.