Device discovery
Some of the devices you should be most worried about compromising your environment are those you don’t control, can’t control, or don’t even know about. The objective of MDE’s device discovery capability is to uncover these risks, be they traditional unmanaged endpoints such as laptops and desktops, or other platforms such as network devices and printers.
Discovery can be approached in two ways:
- Unmanaged devices can be discovered using MDE-onboarded devices. This means no additional agent or software to manage. This is sometimes referred to as the distributed sensor architecture. It is distributed insofar as all your onboarded devices can work together to build the data of discovered devices.
- Managed network devices can be discovered using targeted assessment with a dedicated scanning device with an agent. Microsoft calls this network device discovery or authenticated scan. It is also sometimes referred to as targeted assessment...