Transparency Log Scan
-
Go to
(Menu) > CERT+ > CERTIFICATE
DISCOVERY > Discovery > Transparency Log Scan.
The Discovery : Transparency Log Scan : Add Discovery page is displayed. -
In the Discover Details section, select/enter the following details:
Table 1. Field descriptions for discovery details Field Description *Discovery Run Type Click the check box to select the desired discovery run type. The possible types are:
- On-demand - The user can trigger a discovery manually whenever he/she wants.
- Schedule - By scheduling the discovery, the user can automate the process for a defined time/ frequency.
Note: AppViewX will trigger the discovery certificates process for that instance.Discovery Instance Name Enter the name of the discovery instance. Description Enter the required details in this field.
Note: Character limit: 2000 charactersNote: The following fields are displayed only when Discovery Run Type = Scheduled.Occurrence Type From the dropdown list, from the following options, select an occurrence frequency:- Daily
- Weekly
- Monthly
- Yearly
*Repeat On Note: This field is displayed only when Occurrence Type = Weekly.Select the checkbox corresponding to the day of the week on which you want the discovery occurrence to repeat.*Starts On Click
(Calendar widget) to
select a date to start the scheduled discovery.*Ends From the following options, select when the scheduled discovery is to end: - Never: Discovery never stops.
- After: Discovery stops after the number of occurrences specified in the text field.
- On: Discovery stops on the date selected
using
(Calendar widget).
Summary Displays a summary of the selections made for scheduled discovery *: Mandatory fields -
In the Discover By section, enter/select the following details:
Table 2. Field descriptions for the Discover By section Field Description *Discovery Log From the dropdown list, select the source of discovery. *Discovery Criteria From the dropdown list, select the criteria that will be used for fetching certificates from the transparency log. *Domain name Enter the domain name string in the *.* format. *: Mandatory fields -
In the Discovery Rules section, from the Associate Rule dropdown
list, select a rule that will be used to filter the discovered
certificates.
A set of filters is combined to create a rule, from the Rules menu. The selection of rules will apply respective filters on discovered certificates.
-
In the After Discover section, enter the following details:
Table 3. Field descriptions for the After Discover section Field Description *Move Certificate to Inventory with Status Select from one of the following options: - Do not move: The newly discovered certificates and their objects will not be moved to the inventory.
- Managed: The newly discovered certificates and their objects will be moved to the inventory with the status set to Managed.
- Monitored: The newly discovered certificates and their objects will be moved to the inventory with the status set to Monitored.
Use Access Control Rule To apply the rule configured using Access Control, select this checkbox. Note: If this checkbox is enabled, the certificate group will be associated automatically by the rule in access control.*Certificate Group From the dropdown list, select a certificate group to which the discovered certificates will be associated. Based on the group association, a policy will also be applied to these certificates, which will help ascertain compliance or non-compliance.
*: Mandatory fields - Click Discover/Schedule to trigger the on-demand/scheduled discovery, respectively.
