Add Active Sensor(s) to the Command Center

After installing or upgrading an Active Sensor v2.0 or above, you must add a new Active Sensor to the Command Center:

  1. Sign in to the Command Center.
  2. Go to Sensors > Sensors overview.

  3. In the secondary navbar, click New sensor > Enrollment Overview.

  4. In the table, find the respective sensor. The Enrollment Status should be Pending.

  5. Select the sensor.

  6. Click on the Actions button.

  7. From the drop-down, select Accept request.

  8. Review the below information in the popover modal window, configure the Targetable IP Ranges, and then click Accept request.

Sensor Name This is a human readable name, for the ease of the operator.
IP Address Reuse, IP Reuse Domain If IP Reuse domains are configured in the Command Center, this option enables the operator to select the right IP Reuse domains for the Active Sensor. This information is used to ensure tasks that target reused IP addresses can still be resolved correctly. There must be no overlap between selected IP Reuse Domains.
Targetable Networks An Active Sensor has a restricted list of IP addresses it is allowed to query. The operator must set this list by defining and selecting one or more Targetable Networks. Selected domains can be recognized by the darkened background color. The plus icon to the right of the field provides an easy way to add new Targetable Network definitions. Valid values for a new entry are a single IP, IP range, or CIDR, for example "10.12.34.56", "10.0.0.32-10.0.0.63", or "10.0.0.0/8". Invalid values are "0.0.0.0" and "any". Please remember to select the Targetable Network after adding it.

An Active Sensor can be removed by checking the checkbox on its left-hand side, and clicking the trash bin icon in the upper-right corner of the Active Sensor table.

Because an Active Sensor will only perform an action when the user issues a task, the Active Sensor has no pause option. An Active Sensor automatically activates when a task is created, and it automatically pauses once its tasks are done.

To view the configuration of an Active Sensor after its creation, click on the sensor name to open its details. The configuration of the sensor is shown on the left-hand side of this page.

To edit the configuration, click Edit in the sub-menu, and change the configuration in the form modal that appears. The edit options available are Sensor Name, IP Address Reuse, Associated Monitored Networks and Targetable Networks.

Reserved IP Ranges

The Active Sensor uses a private virtual network to ensure secure internal communications. A small range of IP addresses are reserved for this private network. The Active Sensor cannot query assets on the network for these reserved IP addresses. If the Active Sensor must be able to query IP addresses from the default reserved range, the configuration can be updated on the server, to change the IP range that is used for the Active Sensor private virtual network. Please refer to the sections about installing an Active Sensor in the eyeInspect Installation and Configuration guide for more information about the required configuration steps.

The default values for the reserved IP ranges are:

  • "172.16.255.0/28" and "172.17.0.0/16" on the Command Center server
  • "172.16.255.16/28" and "172.17.0.0/16" on the Active Sensor server