Designate a Discovery Computer

Applies To: WatchGuard EPDR, WatchGuard EDR, WatchGuard EPP

Discovery computers discover other computers on the network that WatchGuard Endpoint Security does not manage. The first Windows computer that you add to WatchGuard Endpoint Security is automatically designated as the discovery computer.

On the Network Services > Discovery tab, you can select one or more Windows computers to scan the network for computers that are not managed by WatchGuard Endpoint Security.

For information on the role of the discovery computer and remote installation, see Install the Client Software Remotely (Windows computers).

Designate a Computer as a Discovery Computer

To search for unmanaged devices across all subnets on the network, add at least one discovery computer from each subnet.

To designate a discovery computer:

  1. From the top navigation bar, select Settings.
  2. From the left pane, select Network Services.
  3. Select the Discovery tab.
    The Discovery page opens with a list of existing discovery computers.
  4. Click Add Discovery Computer.
    The Add Discovery Computer dialog box opens with a list of all the Windows computers on the network.

Screen shot of WatchGuard Endpoint Security, Add Discovery Computer

  1. In the search bar, type search terms, such as the name of the computer you want to designate as a discovery computer.
  2. Select the computer you want to add.

To remove a discovery computer from the list:

  1. From the top navigation bar, select Settings.
  2. From the left pane, select Network Services.
  3. Select the Discovery tab.
    The Discovery page opens with a list of existing discovery computers
  1. In the list of computers, next to the discovery computer you want to remove, click .

Screen shot of WatchGuard Endpoint Security, Network Services, Discovery tab

Schedule and Run Discovery Computer Tasks

You can configure the discovery computer to run at regular intervals or you can run a discovery task on demand.

To schedule and run discovery computer tasks:

  1. From the top navigation bar, select Settings.
  2. From the left pane, select Network Services.
  3. Select the Discovery tab.
    The Discovery page opens with a list of existing discovery computers.
  4. In the list of computers, next to the discovery computer you want to configure, click Configure.

Screen shot of WatchGuard Endpoint Security, configure discovery computer

  1. To enable the discovery computer to search for unprotected computers every day, from the Run automatically drop-down list, select Every Day.

Screen shot of WatchGuard Endpoint Security, configure discovery scope

  1. Select the time of day when the search runs.
    To specify the time based on the time on the discovery computer, select the Computer's local time check box. If you do not select this check box, the time is based on WatchGuard Cloud server time.
  2. To discover computers on demand, from the Run automatically drop-down list, select No.
  3. In the Discovery Scope section, select an option to limit the scope of the discovery computer search. For more information, see Limit Discovery Scope.
  4. Click Save.
    The discovery computer shows a summary of the scheduled task in its description. If you selected to not run the task automatically, select Check Now to discover computers on demand.

Limit Discovery Scope

The scope settings only affect the subnet where the discovery computer resides. In the Discovery Scope section, you can limit where the discovery computer searches.

Search across the entire network

The discovery computer uses the network mask configured on the interface to scan its subnet for unmanaged computers.

Search only the following IP addresses

Enter an IP address or IP address range, separated by commas. The IP ranges must have a dash or hyphen in the middle (for example, 192.168.1.1-192.168.1.254). You can only specify private IP address ranges.

Search for computers in the following domains

Enter the Windows domains for the discovery computer to search, separated by commas.

See Also

Configure Network Services

Install the Client Software Remotely (Windows computers)