The InsightVM Scan Assistant executable is solely dedicated to InsightVM and is configured to display a certificate on port 21047. Given that remote assets are not on your network, you typically cannot scan them directly. Change settings for a manual scan. Automate Insight Agent Deployment in AWS - Rapid7 The Rapid7 Insight Agent ensures your security team has real-time . Nexpose On-Premise Vulnerability Scanner - Rapid7 When you start out with one of our vulnerability management solutions, Nexpose or InsightVM, one of the first things you should build and set up is a best practices Scan Template.Because best practices are constantly changing, make sure you look at the date this blog was posted and make your decisions accordingly. fsfetea (fsfetea) November 7, 2021, 7:41am 4. https://docs.rapid7.com/insightvm/scan-engine-and-insight-agent-comparison/. The Insight Agent can be deployed easily to Windows, Mac, and Linux devices, and automatically updates without additional configuration. -you cant do adhoc scanning with the agent (but you can with the assistant) you have to wait the 6 hours or so for the agent to update the info Rapid7 Insight Agent + InsightVM Scan Assistant in Tandem | Rapid7 Blog The New Vulnerabilities and Remediated Vulnerabilities columns in the table reveal the count of newly discovered and remediated vulnerabilities for each asset for all scans after November 30, 2022. When InsightVM users install the Insight Agent on their asset for the first time, data collection will be triggered automatically. Additionally, you can use the custom policy builder to edit values within typical benchmarks. To start a manual scan for a site: Scanning a single asset at any given time can be useful. In this article, well focus on using Insight Agent for InsightVM. Events Monitor collects and enriches operating system events and sends them to the Rapid7 Insight Platform. The agent and scan engine are designed to complement each other. For context, the agents can report directly into the Insight Platform OR any collector that you have deployed. If you need to force this action for a particular asset, complete the following steps: If you have assets running the Insight Agent that are not listed in the Rapid7 Insight Agents site, you can attempt to pull any agent assessments that are still being held by the Insight platform: This command will not pull any data if the agent has not been assessed yet.