icon-itdr.svg
ITDR

Enabling Active Directory Attribute Collection

ITDR collects Active Directory (AD) domain object (users and computers) attributes. After you configure an AD domain for scanning, you can enable attribute collection. The Windows endpoint agent assigned for scanning the AD domain collects the attributes. You also schedule the scan frequency.

To enable AD attribute collection:

  1. Configure an AD domain for scanning.

    The AD domain appears on the Active Directory Posture page.

  2. Click the Edit icon for the AD domain for which you want to enable attribute collection.

  3. In the Scan Agents Details window, under Attribute Collection:

    1. Select Enabled.
    2. Select a scan frequency (Weekly or Monthly) from the drop-down menu.

  4. Click Submit.
Related Articles
About Active Directory PostureScanning an Active DirectoryEnabling Active Directory Attribute CollectionTriggering an On-Demand ScanViewing Failed Scan Check DetailsConfiguring Scan and LDAP Connection TimeoutSpecifying a Domain Controller for ScanningStopping an Ongoing ScanEditing or Deleting a Scan