Best practices
-
You must have high-quality, accurate host data.
Because of the passive nature of network discovery, your threat defense devices must be positioned as close as possible to your protected hosts. This allows the threat defense devices to watch network traffic to and from these hosts, giving you accurate data about applications, services, and vulnerabilities on your network.
-
Devices should have visibility to east–west traffic flows as well as north–south traffic flows to build an accurate host profile.
-
You can create a scheduled task to update recommendations automatically.