icon-unified.svg
Experience Center

About Discovered Devices

The Discovered Devices page shows detailed information about all the discovered devices in the Internet of Things (IoT) Discovery Report, which includes Internet of Things (IoT) devices, servers, and unmanaged user devices. You can filter the table by device type, category, classification, or location.

Discovered Devices provide the following benefits and enable you to:

  • Gain comprehensive insights into all the IoT devices, servers, and unmanaged user devices connected to your organization's traffic.
  • Provide feedback on inaccurate or unknown device classification.
  • Understand and evaluate IoT policy status and its impact on IoT device behavior.
  • Analyze web logs for each device's traffic to secure your organization's traffic from potential threats posed by diverse device environments.

About the Discovered Devices Page

On the Discovered Devices page (Analytics > Internet & SaaS > Analytics > IoT Discovery Report > any section of the IoT Discovery Report), you can do the following:

  1. Show or hide filters.
  2. Download the data in a CSV format.
  3. Filter the table by Device Type, Category, Classification, Policy Status, or Location.
  4. Search for a device by its IP address or auto label.
  5. View a list of devices. For each device, you can see the following columns:
    • IP Address: The IP address of the device. Click on an IP address to open the page to get more insightful information on this device.

      • The detailed information per IP address page consists of the following sections:

        • This section shows the auto label, category, classification, location, type, and protocols used.

          Close
        • This section shows the following details:

          • Timestamp: The reporting period that summarizes when the web policy was applied and when the policy action took place on the device.
          • Policy Status: Displays if the IoT policy is applied or not.
          • Total IoT Policies: Total number of IoT policies.
          • Policy Action tables: You can view details pertaining to the policy action (Allow or Block) in a table which provides details such as policy name, type of policy, and number of hits. You can click the number of hits to further drill down to view details of Policy Type, Policy Action, Total Hits, Allowed Domains, or Blocked Domains corresponding to the option you selected. You can view a list of Domain/IP with the Protocols and the number of hits for the allowed and blocked domains. You can additionally view logs, export data, or search for a particular domain.

            Currently, only URL Filtering policy status and statistics data are available in the IoT Report. The default policy None (default) is a URL Filtering policy and not an IoT specific policy. Therefore, it is not counted as an IoT policy.

          The Web Policy section shows details of the total IoT Policies, the status of the policy, and a policy action tableClose
        • This section shows a graph with hourly details of the inbound, outbound, and total bandwidth consumption for the device in the last 24 hours.

          Close
        • This section shows a chart which displays a detailed traffic flow for the device on which IPs and corresponding domains it communicates with, along with the action that was taken.

          Close

        Additionally, you can click View Logs to open Web Insights Logs for the device or click Submit Feedback to provide feedback on incorrect or unknown device classification to the AI/ML engine.

        A page showing detailed information per IP address with data and charts.

        Close
    • Device Type: The device type.
    • Auto Label: The device descriptor based on its internet traffic that allows users familiar with the network to identify the device. It may contain a model number, model name, OS, or manufacturer name.
    • Classification: The IoT device classification for the device.
    • Category: The categorization of the classifications that the device falls under. The following categories are available:

        • Automotive
        • Business & Industrial
        • Consumer Electronics
        • Laptops & Desktops
        • Networking & Storage
        • Servers
        • Smart Home & Office
        • Smart Phones, Tablets & Watches
        • Unknown
        Close
    • Location: The location from which the device is connected.
    • Policy Status: The status of the policy (All, No Policies, or Applied). Policy Status is only applicable for IoT devices, not servers or unmanaged user devices.
  6. View all the insights logs related to the IP address. You are redirected to the Web Insights Logs page.
The Discovered Devices page with a table, different data, and annotated sections.
Related Articles
About Cybersecurity InsightsAbout Interactive ReportsAbout Industry Peer ComparisonAbout the System Audit ReportAbout the Sandbox Activity ReportScheduling the Sandbox Activity Report Weekly EmailAbout the Sandbox Files Found Malicious ReportScheduling the Sandbox Files Found Malicious Report Weekly EmailCIPA Compliance ReportAbout the Company Risk Score ReportAbout the User Risk ReportCompany Summary Report (CIO Report)Company Summary Report (CSO Report)Security Policy Audit ReportExecutive Insights ReportAbout SaaS Assets Summary ReportViewing Internet & SaaS Quarterly Business Review ReportsAbout Configuration Risk ReportAbout the Data Discovery ReportViewing Data Discovery DetailsAbout the IoT Discovery ReportAbout Discovered DevicesProviding Feedback on IoT Device ClassificationsAbout Scheduled ReportsScheduling ReportsCreating or Copying a ReportExcluding Locations in User-Related ReportsExporting and Importing ReportsPrinting ReportsAbout Endpoint DLP ReportAbout Endpoint DLP Report: IncidentsAbout the Email Security ReportAbout Email Security Report: IncidentsAbout the Gen AI Security ReportAbout the Instance Discovery ReportViewing the Resource Discovery Report