Network Inventory

The Network Inventory feature defines where certificate discovery should occur by listing specific IP addresses for scanning. It supports manual entry and bulk upload, with tagging options like datacenter or application name. This focused approach avoids scanning irrelevant areas, improves efficiency, and ensures consistent, repeatable discovery across key network segments like DMZs and app layers.

Adding Networks to the Network Inventory

  1. Go to (Menu) > CERT+ > CERTIFICATE DISCOVERY > Discovery Configuration > Network Inventory.
    The Discovery Configuration :: Network Inventory page is displayed.
  2. Click + Create.
    The Discovery Configuration :: Network Inventory > Add page is displayed.
  3. Enter/Select the Basic Details of the network you want to add to the inventory.
    Table 1. Field descriptions for the Basic Details
    Field Description
    *Name Enter a name for the network.
    Important: This field does not support special characters.
    Description Add additional details about the network entry.
    *Network Settings Select a network setting that applies to this entry.
    *Network Input By From the dropdown list, from the following options, select the source of the network entry list:
    • Custom: Lets you enter a list of the port addresses and/or subnets to be excluded from the network scan.
    • Upload: Lets you upload a file that has the IP addresses and/or subnets to be listed in the network inventory.

      Acceptable file formats: .xlsx, .xls, .csv

      Important: To view a sample network list file:
      1. From the Network Input By dropdown list, select Upload.

        The Upload File field is displayed.

      2. From below the Upload File field, click Download Sample Template.

        The sample template will be downloaded to your system.

    *Network List For Network Input By = Custom

    Enter the IP addresses, IP address ranges, or subnets that have to be listed in the network inventory.

    Separate multiple entries with commas or a new line.

    For Network Input By = Upload

    To upload a .xlsx/.xls/.csv file that has the netwprk list:
    1. Click Upload.
    2. Navigate to the location of the file.
    3. Select the required file.
    4. Click Open.
    *: Mandatory fields
  4. Click Add.
    The network details are listed in the table below the Add button.
  5. Click Save.

Disabling Networks Listed in the Network Inventory

You can disable a network listed in the network inventory to exclude it from a discovery instance. This helps avoid scanning irrelevant or restricted networks, reduce duplicates, or optimize performance. The disabling is temporary and the networks can be re-enabled when needed.

Networks can be disabled even if they are included in scheduled certificate discoveries. This allows more flexibility in network discovery configurations, without manual dependency checks.

To disable a network listed in the network inventory:
  1. Go to (Menu) > CERT+ > CERTIFICATE DISCOVERY > Discovery Configuration > Network Inventory.
    The Network Inventory page is displayed.
  2. From the inventory, under Status, turn off the toggle.
    The Network Successfully Disabled message is displayed.

    When a network that is mapped to a scheduled discovery instance is disabled (after it is already mapped), the status of that network, in the discovery instance inventory, is set to Disabled. The overall status of a discovery instance, where at least one network is disabled, is set to Partially success. If all networks in a discovery instance are disabled, the discovery status if set to Failed.

    A discovery instance that includes a disabled network cannot be triggered for execution.

Enabling Disabled Networks in the Network Inventory

To enable a network for inclusion in the discovery instances after it has been disabled:
  1. Go to (Menu) > CERT+ > CERTIFICATE DISCOVERY > Discovery Configuration > Network Inventory.
    The Network Inventory page is displayed.
  2. From the inventory, under Status, turn on the toggle.
    The Network Successfully Enabled message is displayed.

Deleting Networks Listed in the Network Inventory

  1. Go to (Menu) > CERT+ > CERTIFICATE DISCOVERY > Discovery Configuration > Network Inventory.
    The Network Inventory page is displayed.
  2. From the network inventory list, under Network Name, select the checkbox(es) corresponding to the network list(s) you want to delete.
  3. From the menu bar, click .
  4. From the confirmation dialog box, click Submit.
    The selected network list(s) are deleted.