|
| 1 | +--- |
| 2 | +title: Device discovery for Microsoft Defender for IoT in the Defender portal |
| 3 | +description: This article describes device discovery for Microsoft Defender for IoT in the Defender portal. |
| 4 | +ms.service: defender-for-iot |
| 5 | +author: limwainstein |
| 6 | +ms.author: lwainstein |
| 7 | +ms.localizationpriority: medium |
| 8 | +ms.date: 06/19/2024 |
| 9 | +ms.topic: conceptual |
| 10 | +--- |
| 11 | + |
| 12 | +# Overview of device discovery |
| 13 | + |
| 14 | +To protect your environment, you need to take inventory of the devices in your network. However, mapping these devices can often be expensive, challenging, and time-consuming. |
| 15 | + |
| 16 | +Microsoft Defender for IoT in the Microsoft Defender portal integrates with [Microsoft Defender for Endpoint device discovery](/defender-endpoint/machines-view-overview#device-inventory-overview), allowing you to discover devices connected to your operational technologies (OT) network without using extra appliances or complex process changes. Defender for IoT uses onboarded endpoints to collect, probe, or scan your network to discover devices. |
| 17 | + |
| 18 | +This article describes the benefits and capabilities of device discovery in Defender for IoT. |
| 19 | + |
| 20 | +Learn how to [discover and manage your IoT/OT devices](manage-devices-inventory.md) in the device inventory. |
| 21 | + |
| 22 | +[!INCLUDE [defender-iot-preview](../includes/defender-for-iot-defender-public-preview.md)] |
| 23 | + |
| 24 | +## Device inventory: initial view |
| 25 | + |
| 26 | +If you don't yet have a Defender for IoT license, the **Device inventory** page detects your OT devices and lists them with regular device data, but without security data. For example, the device name, IP, and category are visible, while the risk level isn't visible. The device inventory also displays a note at the top of the page that indicates the number of unprotected OT devices. |
| 27 | + |
| 28 | +In this case, [onboard Defender for IoT](get-started.md) to get security value for your OT devices. |
| 29 | + |
| 30 | +If you're seeing the message that indicates the number of unprotected OT devices, and you've already set up Defender for IoT, [set up a site](set-up-sites.md) and associate the relevant devices with it. |
| 31 | + |
| 32 | +## Device inventory page |
| 33 | + |
| 34 | +The **Device inventory** page helps you identify details about specific devices, such as manufacturer, type, serial number, firmware, and more. Using these details, you can track your devices, dive into device information, and identify potential threats or incompatibilities. |
| 35 | + |
| 36 | +Learn how to [discover and manage your IoT/OT devices](manage-devices-inventory.md) in the device inventory. |
| 37 | + |
| 38 | +Learn more about the [device inventory in Microsoft Defender for Endpoint](/defender-endpoint/machines-view-overview#device-inventory-overview). |
| 39 | + |
| 40 | +## Device discovery capabilities |
| 41 | + |
| 42 | +The key device discovery capabilities are: |
| 43 | + |
| 44 | +|Capability |Description | |
| 45 | +|---------|---------| |
| 46 | +|OT device management |[Manage OT devices](manage-devices-inventory.md):<br>- Build an up-to-date inventory that includes all your managed and unmanaged devices.<br>- Classify critical devices to ensure that the most important assets in your organization are protected.<br>- Add organization-specific information to emphasize your organization preferences. | |
| 47 | +|Device protection with risk-based approach |Identify risks such as missing patches, vulnerabilities and prioritize fixes based on risk scoring and automated threat modeling. | |
| 48 | +|Device alignment with physical sites |Allows contextual security monitoring. Use the **Site** filter to manage each site separately. Learn more about [filters](/defender-endpoint/machines-view-overview#use-filters-to-customize-the-device-inventory-views). | |
| 49 | +|Device groups |Allows different teams in your organization to monitor and manage relevant assets only. Learn more about [creating a device group](/defender-endpoint/machine-groups.md#create-a-device-group). | |
| 50 | +|Device criticality |Reflects how critical a device is for your organization and allows you to identify a device as a business critical asset. Learn more about [device criticality](/defender-endpoint/machines-view-overview#device-inventory-overview). | |
| 51 | + |
| 52 | +## Supported devices |
| 53 | + |
| 54 | +Defender for IoT's device inventory supports the following device classes: |
| 55 | + |
| 56 | +|Devices |Example | |
| 57 | +|---------|---------| |
| 58 | +|**Manufacturing**| Industrial and operational devices, such as pneumatic devices, packaging systems, industrial packaging systems, industrial robots | |
| 59 | +|**Building** | Access panels, surveillance devices, HVAC systems, elevators, smart lighting systems | |
| 60 | +|**Health care** | Glucose meters, monitors | |
| 61 | +|**Transportation / Utilities** | Turnstiles, people counters, motion sensors, fire and safety systems, intercoms | |
| 62 | +|**Energy and resources** | DCS controllers, PLCs, historian devices, HMIs | |
| 63 | +|**Endpoint devices** | Workstations, servers, or mobile devices | |
| 64 | +| **Enterprise** | Smart devices, printers, communication devices, or audio/video devices | |
| 65 | +| **Retail** | Barcode scanners, humidity sensor, punch clocks | |
| 66 | + |
| 67 | +## Next steps |
| 68 | + |
| 69 | +[Discover and manage devices](manage-devices-inventory.md) |
0 commit comments