Import devices from Active Directory

<< Click to Display Table of Contents >>

Raynet One > 1.1 > User Guide > Start your journey now! > Discover your IT landscape 

Import devices from Active Directory

If your computer is part of a Windows domain network, it is typically part of an Active Directory. It is the standard registry of Windows computers. The Windows computer publishes its name and device details onto the central AD server. Thus, by importing the AD hierarchy into Raynet One, you provide the essentially complete set of computers of your Windows network. By leveraging the power of the cloud-based Azure AD, you can even extend your outreach to worldwide proportions! In this chapter, we want to learn how to import your AD hierarchy.

 

Secure connections from the runner to the AD host require PKI trust. It can be a difficult topic in Windows environments with multiple domains. Find the necessary cryptographical root certificate which signed the AD server connection certificate and embed it into the runner's machine certificate root trust storage.

 

1.Navigate to the Devices view in the Asset Management workspace. Then click on Add new device and select Import to open the Device import wizard.

 

Screenshot 2024-04-11 120244

 

2.Select your import source according to your managed environment. In this case, it will be Active Directory. Then click on Next to proceed.

 

Screenshot 2024-04-11 120502

 

3.Fill in the field Distinguished Name, then select the stored credentials and runner. The Distinguished Name has to match the name of your Windows domain in which your AD is hosted. Provide credentials with sufficient permissions for performing AD queries. The selected runner has to be able to connect to the AD. After filling in necessary details, click on Next to continue.

 

Screenshot 2024-04-11 121505

 

4.In this step you can set filter rules on all the data received from the AD. Each device has a hostname attribute. You can use regular expressions to filter for an accepted set of devices. The regular expressions follow the C# syntax (see the official reference). There are options to filter for a known set of operating systems installed on the AD devices. After carefully considering and choosing the provided options, click on Next to proceed.

5.

Screenshot 2024-04-11 121944

 

clip0050

 

You can provide custom operating system names which mark the devices to be imported, if you enable the option.

 

6.Define the execution mode for scheduling your discovery run. In this example, it will be triggered once. However, you can set exact trigger times daily, weekly or monthly according to your requirements. Scheduled device import jobs will be displayed in full detail on the Devices Automation page. Let's choose the simplest option - Execute once - and click on Next.

 

Screenshot 2024-04-11 122843

 

7.Verify the summary of your configurations. If they are correct, click on Start import. After clicking, you will be presented with a progress page, during which the device import job is scheduled for execution. The specified runner will pick it up and collect data from the AD. If there is any configuration mistake, and you have not yet started the import job, you can go back to previous steps.

 

Screenshot 2024-04-11 123542

 

8.Click on Finish to finalize the process. Alternatively, you can open the Action Center to view details on your discovery run.

 

Screenshot 2024-04-11 124200

 

 

finger1

Be aware:
In order to execute a device import of your Active Directory environment, you need to create a Windows runner first. This runner must be located in a local network and you must provide valid Windows credentials. For runner installation, also read the chapter Add a Windows runner via Runners and for adding new credentials see chapter Add credentials.

 

tip

Tip:
The Current jobs list and in the Action Center (located in the header) displays all past, running and scheduled platform operations. For details, see the Header chapter.