The information stored in ASSET can be used to evaluate and decide on the next course of action when dealing with outages or security incidents. Therefore, building ASSET and keeping this database up to date is very critical for all companies.
However, very often we encounter with customers that the up-to-dateness of the device lists in the CMDB is not at the required quality level and also some customers do not have processes in place to ensure that ASSET is up-to-date. Therefore, we have decided to help customers keep the ASSET database as up-to-date as possible, without the need to manually research and verify the actual status of each individual device.
The solution is built on top of Splunk Enteprise. It is therefore ideal if the customer already runs an instance of Splunk - for IT Monitoring, LogManagement or SIEM needs. However, if customers are not running Splunk yet, it doesn't matter, an instance can be built with minimal HW requirements to ensure the operation of the AleFIT Horizon application.
The solution is based on "passive" data collection from selected network devices. It can combine and merge logs from various devices to create a dynamic ASSET. If necessary, a network scanner can be added as an additional input, but then it is just another piece in the ASSET composition.
The offered solution does not replace the device management in the CMDB, but complements it appropriately and provides a detailed view of the current communication over the data network in real time. The actual device management should be provided in the CMDB system. Therefore, it is a good idea to provide an integration with the CMDB to compare the current status with the status stored in the CMDB and to generate requests to update entries.