You don't type an asset inventory, you let it be scanned
A hand-maintained inventory has two flaws: it ages faster than you can type, and it only contains what someone entered. The dangerous part is what was forgotten. Why a living inventory is discovered rather than recorded, and why a single source is never enough.
The asset inventory is the foundation of almost everything in security management: risk analysis, hardening, vulnerability assessment, audit. It is also the document with the shortest shelf life. Whoever maintains it by hand fights on two fronts, and loses on both.
The two flaws of every hand-maintained inventory
The first flaw is well known: the table ages. Between two maintenance rounds servers get added, laptops disappear, software changes. The second flaw weighs heavier: a hand-maintained inventory only contains what someone entered. The test machine that was never registered, the switch in the side room, the forgotten virtual machine: what nobody has on their list is on no list at all. Yet risk analysis and hardening only reach what the inventory knows. The forgotten stays unassessed and unpatched until it gets noticed, and rarely in a pleasant way.
Discover instead of record
A living inventory therefore comes not from discipline but from discovery. An agent that actively probes the network also finds what nobody ever registered: hardware, installed software, open ports and, via SNMP, the infrastructure in between. Running on a schedule, the inventory stops being a maintenance project and becomes a reflection. New devices appear on their own, retired ones disappear, and what is on the network is in the inventory.
One source never sees everything
Even the best scan has limits: it sees what is reachable while it runs. The laptop in the home office is better known to client management. What gets backed up, the backup system knows. What hangs on the WLAN, the controller knows. A complete picture only emerges when these views converge into one inventory. And the difference between sources is itself a signal: what the scan finds but client management does not know is not a row in the inventory, it is a finding.
How isidaten implements this
In isidaten the isidaten agent does the discovery: hardware, software, network and port scans plus SNMP discovery, each scan as a cron job with a freely chosen schedule. Connections to client and endpoint management (Microsoft Intune, baramundi, Ivanti, Aagon ACMP), network (UniFi) and backup (Veeam) add the view of the systems that already know their devices. Everything lands on the same object base as risk, measure and evidence: a discovered asset can be assessed immediately, not only after being copied over. Which sources can be connected is shown on the integrations page, or directly in a demo.
Questions about this update?
Talk to us – we are happy to show you this feature in a demo.