Purpose
This document describes how to update the user defined attributes in agents.
Introduction
Agents in Outpost24 can carry custom metadata called attributes, such as numeric values, text tags, or status flags that help describe or classify what each agent represents. The Updating Agent Attributes feature governs how these attribute values are kept current: either by automatically pulling in data from agent discovery or by using explicitly set override values. This lets you maintain accurate metadata for filtering, reporting, and grouping of agents based on what their environment actually reports or what they represent, ensuring the agent inventory reflects real-world conditions.
Schedule Setting
To activate the Attribute settings:
-
Go to the Main Menu > Netsec > Scan Scheduling > Edit a schedule.
-
Select the Discovery Settings tab.
-
Select the Agent Discovery check box.
-
Select the Add Found Targets To Target Group check box.
To verify the settings:
-
Go to the Main Menu > Netsec > Manage Targets
-
We can see the Target attributes with their values: Checkbox Attribute, Text Attribute, Number Attribute
Configuring the Agent Attributes
There are two places for updating targets' attributes, Agent Attribute Updates and Customize Targets.
Agent Attribute Updates
The Will be changed checkbox can now be checked/unchecked.
-
If checked, the selected Target attributes are updated by the discovery result from Agent discovery.
-
If unchecked, the attribute sub-checkboxes are greyed out and disabled. It means no Target attributes are updated by the Agent discovery result.
Customize Targets
The Update Attributes checkbox can be checked/unchecked.
-
If checked, the relevant Target attributes are updated by values of the below attributes (for example, Number Attribute value is 1337).
It still depends on the settings on Agent Attribute Updates (higher priority) to decide which value to update on the relevant Target attribute.
-
If unchecked, no Target attributes will be updated by values of the below attributes.
If there is no custom attribute or no custom attribute for type Target, the Agent Attribute Updates section and Update Attributes checkbox in Customize Targets are hidden.
Attribute Function Examples
Both Will be changed and Update Attributes are checked
If both Will be changed and Update Attributes are checked:
-
In Agent Update Attributes, only Number Attribute is checked, this means the Number Attribute Target attribute will be updated by the Agent discovery result, regardless of the setting in Customize Targets.
-
For other unchecked attributes, Text Attribute and Number Attribute in Agent Attributes Updates, and the Update Attributes in Customize Targets checked, then the relevant Target attribute will be updated by the value of attributes in Customize Targets.
For example, the valueText Override Valueof Text Attribute and the value1337of Number Attribute will be updated to relevant Target attributes.
In case both Will be changed and Update Attributes are checked but NO attribute in Agent Attribute Updates is selected, Will be changed will be ignored and only the attributes in Update Attributes applied.
In case there are no attributes on the Agent side, the Agent Attribute Updates section will be ignored.
In case there are some attributes that are not on the Agent side, these attributes will also be ignored.
Both Will be changed and Update Attributes are unchecked
In case both Will be changed and Update Attributes are unchecked, no Target attribute will be updated.
In case both Will be changed and Update Attributes are checked but no attribute selected. the Will be changed will be ignored and only the checked attributes in Update Attributes is applied.
Only Will be changed is checked
In case only Will be changed in Agent Attribute Updates is checked, the Target attributes' value totally depends on the Agent discovery result whether the attribute is checked or not.
For example, Number Attribute is checked, then Number Attribute of Target attribute will be updated only.
Only Update Attributes are checked
In case only Update Attributes of Customize Targets is checked, the Target attributes' value totally depends on the value of relevant attributes in Customize Targets.
For example, according to the value of the attribute in Customize Targets, the Target attributes will be updated as follows:
-
Checkbox Attribute will be updated to No
-
Text Attribute will be updated to Text Override Value
-
Number Attribute will be updated to 1337
References
Related Articles
- Windows 10/Windows 2019 Server
- HIAB Updates
- General Information about SMB/WinRM Scanning
- Change Risk Levels
- Removing an Agent from Windows
- ServiceNow - Legacy
- Windows 8.1
- Netsec Filters
- Discovering the Agent in OUTSCAN
- Technical Specification
- Account Settings
- How to Test SMB Authentication
- Windows 2016 Server
- Identity Provider Settings
- HIAB Server Settings
- Installing a Linux Agent
- Okta Identity Provider Configuration
- Scanning-Less Scanning
- Check Connectivity to Agent Server
- Scan Scheduling Errors
- Overview
- Event Notification Module
- HIAB Maintenance Settings
- HIAB Deployment Guide
- Database Connector (HIAB only)
- Azure AD Identity Provider Configuration
- Add Comments
- Target Groups
- Checking if Agent is Running
- Core Installation
- Windows 2008 R2 Server
- Agent Installation Introduction
- Automatic Asset Joining With Netsec
- Manage Users
- Firewall Setup for Agents
- Scanning Range
- SNMP (HIAB only)
- ADFS Identity Provider Configuration
- Splunk
- Agent Call Home
- Advanced Report Filters
- Accept Risks
- SMB Authentication from OUTSCAN/HIAB
- Virtual HIAB Appliance
- Using the Agent Info Command
- Amazon
- User Roles
- Removing an Agent from Linux
- Retrieving the Agent UUID
- Atlassian Jira
- Understanding Scanner and Scheduler
- Finding the Agent Version
- Create and Edit Event Notifications
- Installing a macOS Agent
- Syslog (HIAB only)
- Setting Up an Agent Using System Proxy
- ServiceNow - App
- Thycotic
- DNS Lookup in UI and in Console
- HIAB Console
- Auditing Guide
- Adding Agent Attributes
- HIAB Distribution Settings
- Run Verification Scans
- Agent Latest Version
- Finding New Agents In OUTSCAN
- Setting up a HIAB as an Appsec Scale Scanner
- Checking Schedules from OUTSCAN in Agent
- Hardening the HIAB
- Performing a PCI DSS Scan
- Two Factor Authentication
- Attributes
- Firewall Rules
- HIAB Enrollment
- Supported Platforms for Authenticated SSH Scanning
- Authenticated Scanning Using WinRM
- OneLogin Identity Provider Configuration
- Windows 7
- HIAB Remote Support
- Compliance Scanning
- Manage Targets
- Assign Tasks
- Authenticated Scanning Using SSH
- Tickets Quick Start Guide
- Retrieving Results From the Agent in OUTSCAN
- Appliance Logs
- Converting Normal with Webapp Scans (Netsec) to Portal Workflows
- Updating the Agent
- Troubleshooting SMB Authentication
- Agent Licensing
- Mark as False Positives
- Installing a Windows Agent
- Using Farsight in Netsec
- Testing Target System for Open TCP Ports
- HIAB Restore
- Scan Stages
- Request Clarifications
- HIAB Setup Guide
- Updating Agent Attributes
- CyberArk
- LDAP/AD
- Checking if the Agent has Produced Results
- ArcSight (HIAB only)
- HIAB E-mail Whitelisting
- Adjust Identity Provider SAML Metadata File
- Scanning Critical Industrial Devices/Machines
- Reporting Tools
- Scan Scheduling
- Scanning Performance and Impact Tuning
- PCI Compliance Scanning
- Configuring and Accessing the HIAB console using SSH
- User Groups
- Create Users
- HIAB Remote SSH Guide
- Download Agents
- Create Targets
- Windows 2012 R2 Server
- HIAB Backup
- Report Scheduling
- Access Tokens
- O24AUTH
- Complementary Authenticated Scan on Default Credentials
- Authenticated Scanning Using SMB
- Dynamic Target Group