Skip to main content
The scan modules for systems capture the machine itself: operating system, accounts, services, installed software and the hardware it runs on.

Windows

Created by Windows (AD) or Windows (IP). Four groups:
The scan does not only create the system itself: connected monitors become their own assets (see Network and Devices), and installed software becomes Software and Software Product (see Software and Integrations).

Linux

Created by Linux. Five groups: General, Linux (software, local users and groups, cron, daemons, network services, partitions, routing, NFS exports), Kernel (modules, parameters, CPU mitigations), System Components, and, if installed, Docker (containers, images, networks, volumes, compose stacks).
Linux is the only system type with its own Docker group — there is no separate scan module for containers.

macOS

Created by macOS. Five groups: General, Configuration (software, system software), MAC (users, groups, storage, daemons, routes, network connections), Security & Reliability, and System Components — for macOS additionally with Bluetooth, Thunderbolt and the Apple security layer iBridge.

Unknown Systems

If a scan finds a system but cannot determine it unambiguously, it gets the type Unknown System — name, addresses and the detected operating system with an accuracy value, plus open ports. It appears on the dashboard under Unknown Systems with the note Typing pending; there you assign it a type, see Unknown Systems. Credentials, target details and module settings for these scans are under Windows, and in the Scan Reference for Linux and macOS. What a Windows system’s own server services capture — directory, name resolution, address assignment — is described under Directory and Network Services.