Automated infrastructure discovery & analysis

CLESS: Credential-less discovery techniques

Configuration management solutions are often limited with regard to their discovery capabilities as well as by what they can manage and for what they have explicit credentials. Consequently, configuration information is difficult or time-consuming to collect, and is often incomplete and out of date. Therefore credential-less discovery techniques nicely complement the managed approach by providing a wide range of data quickly.

We had started out with the IDD (Intelligent Device Discovery) project to research credential-less (no passwords required) low-intrusive active scanning technologies, which were then used since 2002 on customer accounts and on the entire IBM global network to classify devices and identify "rogue" devices. Jointly with the AURORA team we then added traffic flow analytics to the discovery capabilities, in particular also for the auto-discovery of server and application dependencies.

While these technologies were first loosely integrated in the form of the ITT (Intelligent Transformation Technology) toolkit, we then created the AIDA (Automated Infrastructure Discovery & Analysis) service offering, which embraces the new TADDM (Tivoli Application and Dependency Discovery Manager) product. Meanwhile, most parts of the credential-less technologies have been transferred into TADDM as part of our ongoing partnership, improving its day-one capabilities and augmenting its appeal in large heterogeneous IT environments.


Advantage of flow-based dependency discovery

  • Traffic-based analytics does not require credentials into servers
  • Yields data from all network devices, not just managed boxes
  • Interacting with networking-infrastructure owner is conceptually simpler than working with all the different server-domain administrative groups
  • Forwarding netflows is simpler than polling servers behind firewalls
  • Netflow works with ciphered traffic and avoids privacy concerns
  • No network appliance required
  • Performance. Netflow is an effective aggregation and abstraction mechanisms, right in the network itself — fully accumulated connectivity matrix!