We will assist your organization with the process of scanning your network, discovering relevant assets and capturing that information as Configuration Items (CI).
Starting the CMDB Discovery process
Send a request to oit_cmdb_mgmt@help.ncsu.edu. Once the CMDB Discovery Prerequisites have been collected, the discovery process will start.
Terminology (links to ServiceNow documentation)
- Multisource CMDB Discovery (Tokyo) - ServiceNow Cloud Discovery finds applications and devices on your network, then updates the Multisource CMDB
- MID server (Tokyo) - The Management, Instrumentation, and Discovery (MID) Server runs as a Windows service or UNIX daemon on a server in your local network.
- Configuration Management Database (Tokyo) - CMDB video (2017) - Creates and maintains the logical configurations that your infrastructure needs to support a ServiceNow service.
- Configuration Item (CI) - Any computer, device, software, or service in the CMDB. A CI's record will include all of the relevant data, such as manufacturer, vendor, location, etc. Configuration items can be created or maintained either using tables, lists, and forms within the platform, or using the Discovery application.
CMDB Discovery Prerequisites
- Configure Firewall access setup to Production and Development MID Server(s):
- Reference docs for ServiceNow required ports (Tokyo))
- TCP port access - These ports are defined in the "SNOW_Discovery_CMDB" port group
- Allow MID servers access to target hosts
-
| Production |
snowdismidprod.oit.ncsu.edu |
10.36.1.63 |
| Development |
snowdismiddev.oit.ncsu.edu |
10.36.1.64 |
| Test |
snowdismidtst.oit.ncsu.edu |
10.36.1.68 |
- New ServiceNow accounts for customers will be added to the credential_admin group in ServiceNow Development, Test and Production
Credential Requirements for Discovery of a host
- Windows credential requirements (Tokyo)
- Domain User with local Admin privileges - The account "Wolftech\wt-cmdb-adi.svc" has already been created for this purpose, or a new one can be created. It is configured with local Admin privileges.
- admin$ share access
- PowerShell access
- Membership in the Distributed COM Users local security group
- Account configured in the credentials must have local admin access
- Non-domain systems must have a local Administrator account
- Domain credentials must be used for remote access if User Account Control is active.
- If using software firewall, access to the WMI service in the current namespace and subspaces
- Example settings in ServiceNow

- Using SSH keys for authentication from MID server to host being discovered
- Using SSH keys as credentials for ServiceNow Discovery in Windows
- Cloud Service accounts - your managed cloud infrastructure.
Scope of discovery
Servers, VMs, network appliances, network storage and cloud data centers. As these devices are discovered, configuration items (CI) will be created.
Host information
- Provide the information on the hosts to be discovered
- Host names, IP addresses (preferred) or network ranges for the devices to be discovered
- Linux or Windows
- Define the owner/group responsible for managing the details of a CI. This information will help us define the business rules for how the assets are managed
- Owned By - user that is responsible/CI owner?
- Change Group - which group is responsible for change management
- Support Group - group responsible for incidents involving an asset (CI)
- Managed by - assigned a default based on class (Linux vs Windows) at a particular location.
Discovery Testing and Verification
Initial Discovery will be conducted in the Development NCSU ServiceNow instance using the Development Mid Server.
Development instance : https://ncsudev.service-now.com/
Signoff/Approval by stakeholders
Once successful discovery is verified on the development instance, the discovery schedules will be re-created on the production instance and re-tested.
Production instance : https://ncsu.service-now.com/
Final Delivery/Handoff for Data classification
Once the discovery schedule has been moved into production
- the customer will be notified
- Security and Compliance is notified so that the data classification process can begin
ServiceNow Documentation
Discovery Overview (Tokyo)
Ports and protocols for firewall rules (Tokyo)
Create and test credentials (Tokyo)
Discovery configuration for Linux in ServiceNow (Google doc)
NCSU ServiceNow Knowledge Base
ServiceNow Platform Basics
CMDB Related Searches
Dashboard for your Group : My Groups CMDB CI’s