How To - Populate your CMDB with ServiceNow Discovery
hi everyone thanks for joining early so far i will start around two or three minutes from now hi everyone thanks for joining let me just share my screen hopefully everyone can see my screen um this is discovery workshop so my goal here is tell you what you need to know to successfully deploy your iton discovery so my name is michael corey i have about six years experience with the platform i'm a solution consultant specifically for it operations management whereas where uh discovery falls under so what we're gonna accomplish today so we're gonna talk about the business cases for discovery we're going to talk about how to configure and gain momentum discovery and we're going to help you start leveraging discovery and facilitating it to have a healthy scene to be and have good outcomes with that so our agenda here is first we're talking to seem to be healthy outcomes what that leads to the discovery architecture then we're talking about discovery deployment including mid servers and credentials and i'll show you that in an instance itself and then for running discovery a guide is set up for how you actually set up a mid server and then some additional resources again i will actually be going into an instance for the mid server guide to setup itself so you can see it and see some of the stuff actually working so one of the first things i want to ask is where everyone is on their journey in terms of cmdb so and let me just pull up this oh i lost it oops apologies everyone give me one moment so between i want everyone here because i want this to be very active participation if possible i really want to you know target this towards who's on the call so between a number between one and four and a list is through i want to see where you currently are at least in your company on your cnv journey so one would be you're just learning about a cmdb trying to understand what a cmdb even is two you're just starting to plan out understanding why having one is so important and how to you know building a plan for a scene seemed to be could really benefit your organization you know three would be taking those initial steps deciding where to start and four you're already kind of full speed ahead but you're really trying to get discovery up and running and really leveraging that so if you could just add note numbers one two three and four into the chat that would be great i don't think you just click these get some good responses oh i see quite a few fours i get some ones and twos that's fine um we have customers all throughout the spectrum on that three-ish okay great okay thank you so much and keep sending them through really appreciate it okay so we have a lot of threes and fours i see and we also do have some earlies ones and two so that's good to see okay so what is a cmdb we have planning initial steps full speed ahead right so first step uh and then just to add a second question so what does seem to be it's a configuration management database but to just kind of second step and i almost almost forgot this so i apologize is have there any uh been any challenges or apprehensions with implementing discovery so this is for everyone so you know even for the early ones you know you just don't have organization buy-in or then maybe for the ones further ahead you know you just don't have the times and resources to really leverage your existing tools um so again someone just put between one two and three just seeing if there's any apprehensions or issues that you're running into someone's okay okay single one twos okay all right thank you i really appreciate this feedback all right seeing some threes as well okay we can kind of talk through those issues um and again if you have questions on q a we're going to have that after as well as we have zach on the call who is going to help answer questions for me and highlight for them if i don't notice them coming up in the column so we should be able to cover most of those so let me just jump right into it and use the the hour that we have because i know a lot of time so what is the benefit for a healthy cmdb so it improves outcomes so right here on the right we're going to talk about how do we get these outcomes on the left so good data management good integration practice good server level reporting that's all really important to us so one of the things that we have service now is we have this identification reconciliation module this ire so as you're taking in different sources of data from from say um you know different sources so say from servicenow or say you have an event monitoring tool or say you have a different discovery tool maybe sccm as you're bringing all that data you might be discovering the same assets over and over again the same configuration items and you might be starting in duplicates so one of the things it's going to do is help get rid of those duplicates and one of the other things is going to do is as your different sources you know finding the same server for instance it's going to say oh well this data source found these attributes and this server found this this data cells found these other attributes which ones do you want to accept is your single system of truth um so i'll get into that i know more later so as we get these kind of these several the service level reporting this good integration practice and this good data management we result on these things on the left which is you know 38 faster incident revolution 82 fewer failed changes and 604 percent more instance revolved with problem management so it really helps the itsm use case so it sounds like a lot of you already have itsm up and running so i'm sure that this could help benefit you so as you're trying to get in for those having hard hard time getting organizational buy-in these are some metrics that help you know sell to the higher ups hey it's going to help you vincent resolution hey it's going to help you with time and resources with dealing with firefighting and dealing with instance of change let's move that ahead let's start automating that let's start helping you out by understanding and making your your it infrastructure transparent so you know hey this is a more important issue this is a less important issue so really important here on we want to avoid doing a cmdb project um so a lot of people will say okay we're doing a go live or hey we're doing this cdb is not uh a goal live or a single project there aren't seem to be tickets there isn't an incident or change there aren't seem to be changes this is a process you're going to implement this and it's going to you're going to keep working at and keep working out it's not just a data model it's also not only a repository of all of your configuration items also going to be going to contain those relationships which is really crucial it's really it's really important that you have this um so you really want to support these business outcomes so you need to know the relationship between your configuration items understand your it infrastructure and the other thing i want to point out here is perfection is the enemy of progress a lot of people are concerned with starting it uh because they don't think it's going to be perfect from day one and that's not really a great way to look at a scene to be you want to start just ingesting data into it and start slowly improving it it does have to be perfect right out of the gate a lot of times we see phased approaches but you want to just start the process um so you can begin it and start doing it right so why do c and b ds fail so this slider here covers most of them but i'm going to highlight a couple unreliable data sources and lack of automation is a crucial one um in inaccurate data and perpetuating the lack of trust um if you have unreliable data sources pulling in bad information what happens is your organization stops trusting in the cmdb and it's just bad information if you're using a system of record to tell you you know what runs rut or what is downstream of what and it's not correct that's not good uh and people stop trusting it and start giving you stop giving you the information you need to make it the complete seem to be that's really not good um and other than that i would say having too much or too little data can can be bad where people focus on getting you know specific attributes for a small number of devices rather than you know seeing their whole infrastructure as a whole and holistically getting you know everything that they need and then working through it from there right here also you can only automate it what you can see just want to highlight this as you start adding devices you seem to be you're gonna have stuff that's on premise you're gonna have stuff from serverless discovery you can have stuff from your cloud environments and you have microservices and even stuff from maybe if you have event management solutions all going in all into the single system um and again you're only going to be aware of what you know of in the scene to be and you're only going to automate what's actually there so it's really crucial to get all of it in there so this slide kind of shows how the cndb has an impact in different environments here so itom is going to prioritize your response based on this is impact so right away you have you know five alerts hitting your system and one of them is for a tier zero or tier one application that's going to cause a massive outage so you're gonna focus on that one first it's gonna help you do that uh it asset management's gonna give you visibility in your hardware and software across your operational united states so say you end user computers you're gonna know what software's on them stuff like that which is really helpful and really great uh and then i'll just you know highlight really quick uh cloud resources uh so you're gonna you know visibility and cloud resource you'll be able to discover them and see what's you know what's in your aws environment and actually you know get real-time updates from it as well and then we have certificate management and firewall workflows so you can you know stop having outages because your certificate's expired or you have misconfigured firewall policies so if you have palo alto firewalls we can pick up your firewall policies in the cmdb which you know it's really helpful and now i'm going to talk about cmd population and know if any questions come up as i'm covering this you know feel free to put them in the chat and we will try to get to them so how do we properly populate the scene to be so cndb is the configuration management database it's populated mainly with configuration items i would say they are the most important component and a ci is simply can be simply an application could be infrastructure it could be a service component a database thing like that and one important rule here which is at the bottom of the slide that i want to highlight is something is either ci or it's not there is no in in between and if you define something as a ci once from that point forward is going to be treated as a configuration item and i'm about to go into my instance to kind of show you this example but one of the things we find a lot of people um have some confusion on is what is a configuration item and what is an asset because they are different uh an easy rule here that's on the slide is assets have financial value cis often deliver financial value um the other thing cis have is relationships which i'll cover in a moment so this grid right here kind of shows you where there's some overlap and where there isn't so something like a software license is not a ci but it has financial value financial impact it's an asset and let me just jump into my instance i'm just going to pause the share while i get this ready and i'm going to showcase so first thing i'm going to show here and this is just one of my instances this is the asset table see this you can see i have 2832 assets a lot of these are consumables the different model categories and then i'm going to go into the configuration table and you'll kind of see these are computers or consumables things of that nature i can also actually do a little sort gear do bar graphs different things of that nature but let me just do a quick group by i'm gonna do the same on configuration items just to help give everyone a better idea so this is what's in our asset table and i can click into the assets but computer and a lot of it is about the financial impact around that asset that has expense lines things like that and then i'm going to go into the configuration items table gonna see different things here so again i am going to sort it by class give everyone a better sense of what this table is and what it contains and then in a moment i'm going to go into our ci class manager to help provide more information on that so configuration item you can see we have some generic applications we have like a tomcat web server we have some cloud functions we have some cloud gateways you know a bunch of different things here all of these are considered configuration items all of them actually have relationships between them and that and that's really a crucial part to configuration management data is not just the configuration items but all of their relationships to each other you know who runs who who runs off of what so i'm just going to click into one of these again this a lot of this is demo data so we'll see what it pops up right now this one does not have any relationships tied to it but if it did i could do a dependency view and kind of show some more information on that and i'll cover this more later and i'll do it in the next demo but for now i'm going to jump into the ci class manager and this is actually what's used to help manage your ci's it's going to help you really with that that ire engine i had mentioned before this is really where it's going to come into play so what i'm going to click on is i'm going to go to windows server and so from hierarchy standpoint how this all works is the configuration item tables that main table is just showing you extended table off of that is hardware and then it's computer server and then windows server so each of those are extended tables off each other and classes and sub-classes so i'm going to click into windows server you can see i have 42 of them in this instance and right off the back when i when i click into this it's going to show me the basic info on the windows server it's going to tell me it's table name things of that nature i want to click here into the attributes so right here is going to show me all the attributes i have for a windows server so these are the basic out of the box ones um i'm sure most of you are familiar with windows servers but it's going to have things like asset asset tag and it's going to have the call name and it's the reference type things of that nature i can also add fields and if there were derived fields say um you use a monitoring solution and it has certain unique fields for itself for example maybe it has a unique tag field or an additional name field or additional attribute field um this would come in as a derived field and so it would get added here and so all of when you're managing windows servers and how you want to manage them you can view all of its attributes right here and then with this identification rule what we do here is really interesting is as we pull in information from these different sources um what it first does when it's identifying them and it's going to look at how to identify it so the first one for identifying windows server it's going to look for hopefully a serial number and a serial number type you know this is pretty common in most organizations if you're serial number choose your unique identifier for a device so for windows server it finds a serial number and serial number type that's the first thing it does it knows it's windows server and it's going to do serial number and again i'm going to show it i'm going to cover a lot more of how this works in more detail but just at a high level you can look at the identification rules for this ci class and this is help helps you determine how do you know it's identifying itself as a windows server and you can adjust these accordingly you can give them different priorities and you can even with reconciliation rules and as you have different data sources determine which one gets priority so i just want to highlight that quickly and then last but not least the suggested relationship so for windows server we obviously serve now we've done discovery for a lot of years now we know what the most relationships are with the windows server what it tends to run on or run is it virtualized by something so all that is right here so it's already providing kind of that suggested relationship for those kind of earlier in the cmdb journey it's going to help you by you know giving you this is probably how you want to mount this data model it's going to do a lot of that work for you and if it's not quite the way you want it you can adjust it accordingly any kind of crucial questions on what i'm showing here on the ci class manager let me just take a quick look and zach if there's been any big important ones let me know yeah nothing around the uh cmdb and discovery quite yet there was a question about uh palo alto being the only firewall option if you wanted to jump onto that but yeah i can actually cover that it's a little out of scope but i'll cover it briefly because it is part of discovery um so for firewall management uh if you are using um palo alto as your firewall manual panorama it'll pick up the firewall policies for you and actually do some automated out-of-the-box solutions for you in terms of helping manage those firewall policies um and actually helps you generate tickets automatically for helping you know keep your firewalls in line and make sure they don't overlap or do or cause unintended issues but right now that that kind of a specific feature set is only for palo alto hopefully that answers the question and if it doesn't feel free to add another comment in the chat and then just to bring it back to the ci class manager another important part of the cnb is the health um so how we can determine if something's complete if it's in compliance things of that nature is all determined here and one of the things i will actually do is quickly show i'm actually just going to jump screens to this is the cmdb health dashboard so you can start seeing cis so i have some demo data here some stuff sales some stuff's not uh you can see kind of compliance so that this data on if it's complete compliant correct that kind of nature all of that is determined here in this health for each ci type so for class you might determine its completeness something else then you might for something else so completeness just means it has all the required fields so you want maybe for windows server you want the serial number and maybe it doesn't have that it's not computer considered complete um things of that nature so any questions on that again just on to the chat but that covers kind of what i wanted to right here i'm going to jump back into my slides okay and this slide just want to reiterate goal of providing transparency with the configuration management database you know seeing your infrastructure is helping you align with your strategic id and organizational business objectives just makes it easier once you understand what you have and what you need it's a lot easier to align those goals now i'm going to go into discovery architecture so how does it all work together so this slide in the middle here we have the cmdb the single source of truth on the left we have your maybe your existing tools maybe use something like walls or solarwinds um this is something that's really great that servicenow does for these tools it works with quals and solarwinds and creates a service graph connector so it works with the company itself to make a a updated upgraded always tested integration point for you to use so if you're using quality solar winds you want to put that interesting to be there's a out of the box service graph connector for you to use to put it right in there that we worked with calls to build uh and it works every upgrade you don't you're not going to have any issues so you're going to be able to port all that data right into cmdb and then on the right we have all the data that mid server can bring in so this stuff like your cloud resources maybe your end points maybe containers or certificates your firewalls and tax and also obviously your your data center your service your networks or iot software all that's going to go in the cmdb you have one data model one platform one architecture one single source of truth and i know i only showed it very briefly but i mean we have a whole suite of reporting it's very easy to transparently showcase you know what are your ci's what are your classes it helps you really provide that information so for those of you earlier in your cndb journey or you're trying to get a value you know buy in from your organization that might help for you hey how many servers do i have i'll give you that answer right now i have 800 servers i have this i have what is my infrastructure i can tell them right away and i can show them and actually show them um the relationships between the infrastructure and how it's supporting itself and i'll go into that a little bit later okay so how does discovery architecture work so mid server is going to communicate with your servers now instance excuse me on a secure port https on port 443 as basically q pcq which communicates back and forth that's how that's going to work and then how the mid server can communicate with the rest of your devices depends on what they are so i'll go a little bit more in discovery later but one of the first parts discoveries it figures out what ports are open and based on that it's going to figure out it helps kind of identify what device it is so i might say oh 422 is open alright it's like server okay we're gonna use ssh oh it's i provided or i'm gonna use api um it's network device with ssmp so depending on what it is it's gonna use that to communicate with it and that's how it's able to gather that data so it's not using the same you know exact you know it's not gonna use i'm not to communicate with the windows server the way the same exact way communicates with storage pretty simple and any uh questions on that architecture please uh add it to the chat and here i'm going to talk about the cloud discovery architecture um the only thing that's really different here is that we have uh asian client collector um it's event based so the cloud read the cloud itself like reserve for instance say you spun up a cloud resource respond one down it's actually gonna in near real time communicate that back to the mid server and it's going to update the cmdb accordingly so instead of a discovery schedule it's going to say hey you spun up three evms and it's going to tell you right away within you know a certain certain amount of time i was going to check the chat real quick in case there are mike there was a question about um how score cards are calculated i was going to answer that unless you want to take it oh you can take it okay so um that covers the discovery architecture for cloud again please uh um ping me if there's a question on that please add the chat we'll help answer that but again it's going to commute with all your devices and communicate with cloud slightly differently and i will show this a little bit more in my instance so here are the four phases of discovery so first we have the scanning phase so what that's going to do is it scans the common pro it ports and says okay what what am i looking at here and based off which ports respond or don't respond can identify what type machine is and we have phase two with classification phase so based off what port responded or what was active it's gonna set a specific classification probe based off that response and then the probe is gonna retrieve additional information like the version of the os which is then gonna help it classify what the device is so oh it's a windows 2012 it's a sql server 2014 something like that hopefully that makes sense and then phase three is the identification phase um so what's going to happen here is actually going to identify what exactly it is so classified oh it's a windows 2012 server identification phase is going to get a little bit more in detail exactly what it is and the identification exploration phase really worked together very very closely so ties right into the exploration phase where it's going to say okay let's update the scene to be here so with the identification phase it's going to say have we already discovered the ci before have we already discovered windows server 7 with this serial number oh we have okay just update the record don't add a new one the exploration phase is kind of ties off you know off of that you know if it already hasn't been identified it's no one it's going to add that and it's going to explore deeply to grab more attributes the expiration phase is going to say let's grab all those attributes before so when i was in that ci class manager and we were looking at all the fields that windows server has and i have not just os but it had maybe disk space different information this is the phase that's going to grab all those attributes and really get them so if you know first phase you're figuring out what it is you're classifying it you're identifying you know how we found this out before what do we know about it expiration phase is like okay let's rescan it let's grab all the data we cannot again any questions on that feel free to ping and then here we're going to talk about and everything that's moving the bar the asian client collector so this uses actually push push base discovery um so it's a little near real time so with a most of what we talked about today has been agentless discovery so we're not you know we're just having the mid server communicate out and we're not you know installing an agent anywhere um but for some use cases having an agent is is really great so i know sir now always did agentless and then we started having customers use cases that said hey can we do you know some sort of agent so one of the main ones was if you have end users or endpoints that aren't always on your vpn network you know they're not always on there um so if you don't have an agent on there and it's not on the vpn network when discovery runs it's not on the network to discover it's not going to pick that up so for some um you know businesses and customers that they they really wanted that ability to have that so that's one main main use case for it um the other one cloud base is really helpful um or ones that you're you're having trouble getting access to so i'll go into credentials later um but with the agent based you know sometimes yours not be able to get access certain systems so we realize you know having an agent right on that system it's just better or if you wanted you know more attributes or more data the agent can sometimes pick up more uh and it's more closer to real time um so it's it can be better in those cases not waiting for a schedule and i'll i'll quickly point over to zach any other thing you think i missed there that i should cover no i think that's pretty good i'm also just hitting up a couple questions in the chat okay and hopefully no questions on that um i'll give you know give give people a minute there's often a lot of questions on the slide and again the agents installed directly on the endpoint and then it communicates with that endpoint the mid server does so all right i will uh move on this is more of a summary slide again uh talking about the asian client collector different things you can do so able to do monitoring events metrics and launch which is great it's really helpful if you're doing event management and it ties directly if you're using itsm you've got you know your change process your instant process you can tie right into there actually generate events for you automatically open up incidents for you and change it can be really great and really be a force multiplier there obviously we talked about discovery so agent-based discovery endpoints and just discovery gaps you know helps cover that gap itsms can help with visibility to endpoints software as a management this one's really actually the big change i think with agent versus agentless having that software visibility um knowing that software usage you know what are exactly on those screens what's installed on them i think that's really critical um and obviously suck up so moving to the next um this is just the discovery plugins that you need again this slideshow is going to be sent out um after this meeting um just don't feel like you need a screenshot or or you know make sure you frankly write this down so i'll move through fairly quickly again these are just the the plugins that we use just to have very very helpful these kind of go into what they are you make sure that those are installed again you will have the slideshow later for reference okay now i'm going to talk more about mid service so for a mid server deployment mid server is really just a lightweight job application that executes this discovery and it populates the cmdb um we usually usually run off like a linux or windows server we do have the mid server binaries write off install.servicenow.com and that's basically how you set it up um we do recommend you deploy them in a cluster uh for failover and load balancing um one thing i'll point out for discovery uh is if you say you have you know you know three different mid servers working through this they'll automatically load balance just gotta read between them depending on how you selected to do that discovery schedule um [Music] we do recommend that at least one mid server should be deployed in each network segment so the mid server is not having to connect over firewalls that will cause latency um i think that's everything so let me know if there's any questions on this slide just some more best practices as well on this one um based off you know the number of targets you're trying to discover you know you have a single system here sometimes kind of shows you again just best practice information um and we'll talk about deploying uh mid servers and i'll actually do a guidance setup later on that we do mention that they're set up in a cluster configuration separate network segments um if you have a ton of devices it's good to add another one just another device running that it's gonna shorten that discovery time and we don't we don't think there should be firewall between the mid server and target devices if possible uh have it within the firewall um that is what is advised hopefully there are no questions on that and zach please let me know if there are oh i see there's a question on sam if we can run agents or they can pick up agentless they can be picked up agentless i don't know what you're using for other tools like say you're using sccm for instance you could pull in that data as well if you're trying to get exact software that's installed on it for the endpoint computers unless they're on that network that's the only way that we pick them up uh and i'd have to take it as a takeaway for the exact software licensing uh that they pick up without an agent but if you are using another i like scm or one of the other ones that already has something on there that's going to pick it up and it can just adjust it hopefully that answers your question jordan oh and here let me actually jump into my instance very briefly um and i'll kind of talk about service a little bit more for you so this is a different instance actually is my aws min server um so i'm going to talk about credentials after this as well but here is a mid server and i'll i'll click through the list in a moment here are the attributes around it um so we have you know what's the name of it what is it validated what version is it on you know what are some of the information here um what we have here in these tabs below though this is what was really great because it's going to pick up all these different information you know i have this log data i have what threads are running on it i have the different things that's done um you know what are the stat the stats on it um so this is some of the view and just information you have just around your mid server itself you're going to see the services that's running and again this instance unlike the one i've shown before this is not demo data this is a real agile smith server we have an aws instance that i have i set up this mid server and i ran discovery and i picked them up and i can actually show you what that looks like as well um but i actually actually ran this one it's all um so this is actually a aws cloud instance and it picks up these cloud resources and i won't spend too too much time on this um unless people really want me to um but i can see you know this is the cloud resources dashboard so you can see you know different information around them like these ec2 instances load balancers how many vms i can click physically if i want to just see the aws world which is what this one is i can see information like this the images i can click into these but i don't want to take too much time on it especially if there's no critical questions on it and i'm about to cover this actually via the slides but i find it's a little easier i'm just showing the credential you know this way so say i wanted to do new credentials one of the things your credentials are going to do is they're going to be split up if it's for cloud discovery or if it's for service mapping or it's for something else so when we create a new credential he's gonna ask us hey what's this for right away it's gonna say windows is it vmware is it ssh is it and based off which one you select is gonna have different things you need to enter so for a very simple one i'm just going to click on windows it's going to open up the proper form for me tells it tells me what i need maybe there's an alias name it was a mint server service account not sure what your i know your setup might be you would create it and it would get added to the credentials list so right now these are my credentials um some of them are demo data but a lot of them aren't uh this is a legitimate one and one of the other ones is is a true api key that i generated and it was able to run uh last thing i want to show real quick here is just your mid service you're going to miss servicing a table you're going to have you know what status there are they validated so this server is validated can actually you know be used for discovery and different things of that nature so i'm going to jump back to my slideshow especially if there's no uh you know critical question on a mid server or anything i just showed let's briefly check um i said card ticket looks like you want me to cover the clown uh the the dashboard and kind of go more into correctness completeness and compliance okay i'll cover that a little bit thank you all right i'm just gonna pause here apologies everyone let's just jump back to my slides and i know i just kind of showed you this so a lot of slides are gonna be what you already saw most common credential types unix windows network other credential types i kind of showed you how that screen would work so i'm just i'm moving on um this is how your credentials are actually secured again encrypted using tls this slide can tell you all the information i would say you know how it works again you will have these slides so i'm not going to cover this in too much detail unless there's a critical question on it so i will move on uh one of the other things we do that's really great with servicenow is we do allow you to use the credential vault so cyberart for instance so you can use an external credential vault you can also use servicenow if you wanted you can also do financial list discovery using nmap so it's going to run that map protocol and you can also use the asian client collector for visibility um so let me know if slides confusing at all to anyone but yes you can use our financial store so for those that really want that and that can be really useful for very secure places i used to work in the bank i know how something like this was really necessary when we were doing discovery okay so security concerns with uh i don't want to just read off the slide here but these are what we recommend for unix and for unix and linux you give pseudo permissions and then that's how you give the root specific commands again when survey's running is run through the patterns it's just running a series of commands based off what it is so with unix linux you usually need sudo to run a lot of commands to get a lot of that resource information so that's why you need that [Music] i will just move on unless there's any questions on these security concerns and i'll move to a guided setup so i will first show these screens uh in the slide and then i will jump in the instance um the the slides are pretty much going to show you the exact thing and this is going to be very useful for later uh for anyone that hasn't already set up a mid server um on your search engine instance you're going to type item guys up and i'll show this in maybe three minutes from now and it's actually going to walk you through it it's actually it's pretty great i've used it uh several times and it's been very helpful so it says like okay first stop mid server it's like create a mid user downloads all the the basically the binary file that you need for the mid server and then validate the server work so you're gonna basically connect to make sure it can actually make sense uh really great um so why you create a user real quick is you create a user that the mid server is actually gonna use and then you give it the royal mid server so that it's able to have the access that it needs the instance to you know populate that seem to be and things of that nature depending on what you're using it for and then you're gonna go to discovery um and i'll move through these fairly quickly because i can show you this in the instance um and then we're going to go into discovery manager so let me just jump out and start doing that okay so right here was the i time guided setup again i'm not going to walk through this entire thing but i'm just going to showcase the screen i know some of you are already past this point and that's fine that won't take up too much time but for those of you earlier we are going to help it is a step-by-step process um and i am working off a demo so i apologize for the slight delay here okay so let me just sorry i think here get started i would just click get started they don't and then it's gonna that same screen we just saw you would click through them and they're basically tasks so i'll say what do you need to do and then when you're done you click you know configure it whatever you need to do and then you mark it as complete and then you move to the next task what i need to do for the download it's going to tell you what you need to do it's going to help you can add notes as you're working through it um then there's some further on steps um let me just make sure i've covered this all so once you've validated the mid server what that's going to do is say okay this mid server is able to communicate the servicenow instance great once you have that that's the mid server setup and that's i showed you before kind of that list of mid servers once you have that and then you can do discovery and i'm going to cover some of these slides in a minute but where you go as you would go into discovery and you actually go into discovery manager as one one option i don't know discovery discovery home and then i'm going to go into the schedules these are all the schedules i have right from here i can see you know there are some suggested applications that it's found based off details and cis it's found right now i don't have any schedule set up that are targeting any ip addresses or anything that i don't have any cloud services accounts configured again this is my demo instance it's not supposed to have these things so click on discovery schedule and show you there's a couple things you can do here you do a cloud-based discovery which is great i've done that in my other instance and i can show that in a minute uh where it actually discovered that aws instance um we have quick discovery this is can be really great especially for those starting out or those trying to expand the scope of what they're discovering just put an ip address here and tell it what server to use so if you're like hey on this network you know there's like 50 windows servers or something and it's on this range you can be like well i know the server's ip 192 blah blah blah blah let's just discover that one and that's really also a great way for testing out discovery is start smalling let's just get one of them discovered because if you were able to find that one you probably found the ones other ones around it so i just want to you know briefly show that and then again show what a new schedule would look like and this is um how we recommend you do discovery so we're going to do a daily discovery um if you are going to you know keep your scene to be up to date daily is usually the best some some cases there's a reason you can't but we usually say do some sometimes early in the mornings do a daily do a daily sync if you can alright so if i'm looking at the schedule itself i can define what mid server is going to use so this is obviously crucial if you have different bit servers they're going to access to different parts of your network especially between the firewalls and we've talked about before you want you know separation based off your vlans so it depends on what miscellaneous are used some of them are not you'll see or speak to some of the devices your infrastructure that's why you have to select which mid server and only that one's going to communicate this is great too for secure environments where um maybe you don't want things touched so you don't want someone you know ever touching a certain network segment or something you know by controlling which submit servers have access to what that helps you do that and hopefully there's no questions kind of on this i know i'm covering it quickly but i know uh a lot more to cover so i just i don't want to you know have no time to cover everything else so i'm going to jump back in my slides so credential management um we're going to click through it and as you go through the selecting the mid servers you're then going to pick what credential to use so you can now you know discover ip addresses or subnets in your environment you can also create schedules and those kind of just showing and do different things so this is um discovery quick start actually runs you through again like that item set up a kind of you know step by step on how to do this um one of the things you're going to do is like providing a service account so if you're doing cloud discovery and you're in here you're going to click what the provider is in just a moment i can put my instance that i did this on and show you what it looks like and you select the data center fairly straightforward you can tell if you want to discover vms or not sometimes you don't just maybe there's tons of vm's on that aws you don't want to know cloud what you're discovering uh this schedule which we showed um and then this is just more information on the schedules themselves um so you can run them ad hoc or on a regular schedule like i had shown mine was running daily but you can pick a time you have a run just one time or what's great too if you have a schedule that's sitting there you can run ad hoc and then that schedule's still there so if you've been coming you know maybe it's a day later or something you just want to run it real quick again feel free to do that you don't have to always have a schedule that's going to run every week or every day and that can actually be great too as you're expanding what you're discovering especially if you're doing kind of a phased approach are there any questions on discovery schedules okay i will take that as new and i'll show service i'm having a minute which will show us our dependencies which is great for really understanding that transparent view of the infrastructure and i'll click on this to show you we can also track even configuration files it's really cool um it'll even open like an unplanned change automatically for you if you needed to so say someone was testing something they forgot to turn certain features on or off which is always great and okay so let me jump in i'll show you some of that stuff so one thing i want to show first so this is my instance where i have some live data i discovered in aws instance this isn't the server that ran that discovery i can actually see the log files i can actually see some of what it did some of what it ran and i'm actually going to go in discovery itself click on discovery log and i don't want to click into this too much because this is actual real data but you can see kind of the ci itself um so for instance these are the regions and you can see you know what it created so i'm going to click into one of these again i'll try to do this quickly because i know we are already getting close to time and i do want to leave some time for q a in case there's any other questions so say so we have the availability zones here this is one of the data centers you can see security groups can see the images and uh right here i'm in one of the availability zones and i'm going to click on the dependency view and so this is what i find the most interesting and the most impressive is this dependency view so this is really why you want configuration management database we want to understand what are these things and how do they connect i know this is a little confusing um but what i'm showing here is it tells me what contains what what's contained by it shows me all the relationships between them so i'm going to go into my other instance and show kind of one actual better map for you but this is actually real-life data so i thought it would be useful to show so let me go back into ci class manager and i'll find a windows server or actually i can just go so these are my windows server so let me grab this one i think so this is the windows server record um i just again really wanted everyone to see this i find this pretty pretty great you can see the asset information you can see the relationships between them all right here in one view if we had tcp connection we could see that we attract configuration files we would see all of that information and right here i'll click on this dependency view and i have about five minutes left and i'll move right into q a as i know there may be some questions and more of a simple one but we can see you know this would be the business application this would be offering so that's how someone else is going to view it and here i'll show a quick service map as well because i find that that is very helpful so kind of an end state of discovery if you do have service mapping is to take it endpoints and do a top-down discovery rather than horizontal which is the normal discovery that we're referring to and see from an end point the underlying infrastructure underneath it so just another tool in that and that seemed to be uh tool belt and while i wait for this one to load is there any other questions that you feel i haven't covered or i should cover in more details and then just very quickly this is a business service i can see some alerts tied to it and there's a little us go for this meetings i don't want to cover because it covers no more event management stuff as well as service mapping but here i can see alerts tied to it you see the service map of it so what is the how does this map look you know what is the infrastructure that supports this business service for instance and while i wait for that you can see details around order status i can see you know it has related ci's i can see changes or alerts affected with it this is really great really puts it right in front of you one single pane and then this to me is the most impressive part of service mapping is right here uh these are my business service so these are actually the cloud gateways so i can actually expand these and logistics is tied to it you can see order creations is tied to it we can see there's an apache server and then the ci group runs underneath it and then has an oracle database supporting it we can see there's there's an alert with this oracle database something's going on with it which is why we're getting a notice that the business service is going to be affected because it's underlying infrastructure at the bottom it is a database server there's a critical issue with that it's going to affect that business service and something like order status the example would be hey people are trying to order something and they can't access the page hopefully that answers quite any questions on that so again just want to do a recap of the different values that it adds you know with itam is going to help you with hardware and software with itunes it's going to help you prioritize the responses that we've just shown with that business service i can say oh those are my most critical applications i'm going to focus on those first um i can see you know what's actually impacting it oh is it this oh is this database server that's waving out it's things like that that vastly saves you more time it really puts that data all in front of you rather than you know swivel training before between various different systems uh obviously we have the certificate management which can be very very helpful you don't know your website's not available because the certificate expired is not great and um itsm if you know increasing the efficiency and reducing risk when you're planning changes that's always great and then for additional resources we can i will send this slide deck out we have discovery documentation we have the configuration management dummy books we have the introduction to cloud discovery for those that have from flat environments uh the documentation on cloud discovery the how-to for the tls certs and stuff on the shazam pro for how that works with the patterns um so again any questions feel free to put them in the chat we'll hopefully answer them um hope thank you all for attending and i really appreciate it i do have an ending poll with this work for me and i am just going to launch it because i really uh appreciate uh everyone responding to it so again any questions please uh put them out there and zach are you seeing anything that i should cover anything crazy coming in but again if there's anything else anybody please throw them either in the question and answer window or in the chat window now that mike's finished this presentation we can we can take those verbally yeah thanks yeah um i don't know if they're actually able to unmute so uh please down to the chat um seems like for most of you it looks like it was pretty helpful um it looks like one of you only found it somewhat useful that's fine feel free to add there's something i didn't cover and you want it covered you want documentation on i'm happy to cover it i tried not to go too too into the weeds here because we didn't have you know like two hours of time um so again if there's something it didn't cover you're like hey this functionality is was just glossed over and i really want to see it we still do have 10 minutes i'm happy to do that okay well so for those uh that don't have any questions um you can feel free to to drop um but if you do please stay on and and and ask them um and you know you know reach out to me after if that doesn't that you're not comfortable you know sending a message that that's fine you can reach out to me after i'm happy to answer questions um okay okay so west you gotta think on optimal sizing permit service threads i would look at the documentation site that's gonna be the most updated with each upgrade they're gonna constantly update those ones so that would be my i actually would that be my best recommendation because those do constantly change um as you know each each update each version it can get tweaked a little bit uh there's some ballpark estimates but the dock is i think like a page or something that's going to give you the best um best information and that'd be available on the servicenow docs i actually think it's actually included in this this site here is a link to it that should give you the exact you know best practice for let me configure this the exact way i want uh so karen has is there a more advanced webinar on identifying errors within patterns so i don't believe there's a how-to that's an advanced discovery that i'm aware of yet but that's something you could talk to your ae on your sales rep and we could probably put something together if you're trying to you're having issues maybe customer success or something like that um if you're having particular issues or something that the patterns are or having trouble with you and for those that they're asking what the kind of the patterns are when when you're discovering things uh it runs through a pattern and you can adjust those patterns or add things for certain devices forever maybe it's a homebrew application or something else sometimes the patterns just aren't picking up stuff the way you want them to or they're not identifying something correctly so you can actually go through the pattern flow and see what's going on and trying to troubleshoot that and sometimes you have to adjust the flow and sometimes you don't any other questions is there any other feature i can go back to my demo so does anyone want to see something again happy to do that i'm happy to go back i can go run through the guided setup for the credentials happy to go through that more and so a rule has a question on what criteria needs to be considered when you need to create a custom field uh that's a great question um it depends on the ci class itself so usually when you're looking at so out of the box with every every uh windows server we have fields that are already part of that table pretty out of the box certain attributes that should cover most of what you need well almost you know 90 percent of scenarios probably higher than that but if there's a reason you need to add a new one usually what you ask yourself is okay are any of the existing attributes covering it and if they're not then maybe you do need to add one it's not a big deal to add one but you do have to maintain that so maybe you're adding one because you're you have a certain unique tag or something or something that you have a unique feel that just you want it captured for tracking purposes then yeah that that that might be a good reason to have one there is some documentation on as well i think that is attached um on adding fields and just fields in general what i would say best practices see if an asteroid is not currently covering it and you do need it for tracking or reporting purposes so there's a need to see it the visibility aspect of it and that's usually a good reason to add it hopefully that answered your question uh and if if you need more exact details on exact best practices again the surgical docs heights will will have that and your additional question you can always reach out to your rep to say i have this particular you change this particular question this is what we're running into what can we do okay great all right we have about five minutes left again thank you all for answering the poll really appreciate it um i only have five minutes so again feel free to drop but i happy to cover something else if it hasn't been covered already now you're very welcome everyone saying thank you um everyone have a wonderful rest of their day really appreciate you all taking the time out of your busy day really really appreciate it all right and with that i will stop my share so again i think we do still have a handful of other participants again any questions feel free to send them and we will answer them i'm going to end this in about a minute or two if i haven't heard a question um just to let you know people out of the room and then zach will ask you is there any kind of questions that we i should um cover or anything that we you don't think was adequately handled it was pretty well done looks like ramesh has one more question for you you want to take a peek at that oh yeah great that's a here let me uh share my screen actually for you on that one ramesh um bear with me one moment i'm just saying let's always look at the question again so you are asking compliance core cardio yeah [Music] apologies for the mesh i'm going to drop a um a document link here so if you want to jump into the docs as well after mike jumps into this um this page is going to give you a lot more insight on the exact fields that are being pulled when looking at those uh completeness client our compliance and correctness uh scorpio thank you thank you zach yeah uh yeah the documentations are really great for that but let me jump into the dashboard i'll show you and i do want to point out in the ci class manager you can edit what you think they should be so if you think completeness means something else to you or you have different required fields you can actually adjust that accordingly so you want to specifically see i think was complete this metrics let me just come here i'm just waiting for it to load so completeness i'm going to click into this actually that wants to let me here we go okay into this one so when you click in this one there's actually um a dashboard that's just for completeness itself uh gives you more information mike i think he was looking at a compliance not completely compliance that i missed i apologize i missed read anything oh good let me click and i know we're just about the end i should be able to cover it okay so the bottom here is the actual the list of ci's themselves um so it's like the ones that need to be audited um so the metric depends so usually is that it hasn't uh it's either stale or that it hasn't had an audit in a while it's my guess again though this is demo data so i'm not positive if you have a specific question on why those ones are coming up and i'm not sure if i covered okay we're gonna eat did that cover it okay and we're just about time so any other questions again just ping them we got one more minute i'm happy to answer them okay all right thank you all again for attending i really appreciate it um hopefully this was useful and that you found it valuable to you and your organization have a wonderful day
https://www.youtube.com/watch?v=ED-3jYy8y-w