The IT and OT sensor scans your network directly. You deploy it in a subnet or VLAN, and it finds and identifies the assets in that segment.
How the sensor collects data
The sensor runs on a machine inside your network and collects data about the devices around it, using two methods together:
- Active scanning: it scans the IP ranges you define, querying devices to identify them.
- Passive detection: with network visibility enabled, it also picks up assets on the segments it can see, without scanning them directly.
Credentials decide how much you get back. With them, the sensor authenticates to devices and collects the operating system, hardware, installed software, and users. Without them, it still identifies devices through fingerprinting, but with less detail.
What the sensor discovers
- Device type, manufacturer, and operating system, through fingerprinting.
- Subnet and switch-port relationships, which build your network topology diagrams.
- Full authenticated inventory for the devices you supply credentials for.
You can deploy several sensors across different segments for wider coverage. Each one sends its results to a connected hub. The sensor runs on Windows, Linux, and macOS.
Compared with the traffic sensor
The IT and OT sensor covers the segments where you deploy it and goes deep on each asset. The traffic sensor covers assets across subnets and VLANs by reading network traffic, with no credentials and no scope to define. For a side-by-side comparison, see Choose your sensor.
Get started
- Check the IT and OT sensor requirements.
- Install the sensor and hub on Windows, Linux, or macOS.
- Create discovery credentials so the sensor can authenticate to your devices.
- Create a discovery action to define what to scan and when.