<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic NMAP Scanning from FMC in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023865#M42740</link>
    <description>&lt;P&gt;Running Firepower Management Center v6.2.0.2&lt;/P&gt;
&lt;P&gt;I’m having 2 issues with NMAP and active discovery&lt;/P&gt;
&lt;P&gt;First issue:&amp;nbsp; Hosts discovered by NMAP are not being added to the network map.&amp;nbsp; Only hosts discovered by passive discovery exist in the network map.&amp;nbsp; Is there a way to have hosts discovered by NMAP added to the network map?&lt;/P&gt;
&lt;P&gt;Second issue:&amp;nbsp; NMAP is not correctly identifying the OS on some hosts.&amp;nbsp; There are a number of windows 7 machines which are being incorrectly identified by NMAP as Server 2008 with 100% confidence.&amp;nbsp; Is there a way to tune the NMAP to properly identify the OS on those hosts?&amp;nbsp; If not is there a way to bulk update the OS on those hosts in FMC?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 13:52:12 GMT</pubDate>
    <dc:creator>pcnudde01</dc:creator>
    <dc:date>2019-03-10T13:52:12Z</dc:date>
    <item>
      <title>NMAP Scanning from FMC</title>
      <link>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023865#M42740</link>
      <description>&lt;P&gt;Running Firepower Management Center v6.2.0.2&lt;/P&gt;
&lt;P&gt;I’m having 2 issues with NMAP and active discovery&lt;/P&gt;
&lt;P&gt;First issue:&amp;nbsp; Hosts discovered by NMAP are not being added to the network map.&amp;nbsp; Only hosts discovered by passive discovery exist in the network map.&amp;nbsp; Is there a way to have hosts discovered by NMAP added to the network map?&lt;/P&gt;
&lt;P&gt;Second issue:&amp;nbsp; NMAP is not correctly identifying the OS on some hosts.&amp;nbsp; There are a number of windows 7 machines which are being incorrectly identified by NMAP as Server 2008 with 100% confidence.&amp;nbsp; Is there a way to tune the NMAP to properly identify the OS on those hosts?&amp;nbsp; If not is there a way to bulk update the OS on those hosts in FMC?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 13:52:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023865#M42740</guid>
      <dc:creator>pcnudde01</dc:creator>
      <dc:date>2019-03-10T13:52:12Z</dc:date>
    </item>
    <item>
      <title>Hi @pcnudde01  </title>
      <link>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023866#M42741</link>
      <description>&lt;P&gt;Hi &lt;SPAN&gt;&lt;A href="https://supportforums.cisco.com/users/pcnudde01"&gt;pcnudde01&lt;/A&gt;&lt;/SPAN&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Did you configure the network for the NMAP scanned hosts in the "Network Discovery" policy?&lt;/P&gt;
&lt;P&gt;2. No way of tuning NMAP. I guess that it is possible using the API to bulk update the OS on hosts, but I have not seen anything like that, yet.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Jun 2017 19:45:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023866#M42741</guid>
      <dc:creator>Dennis Perto</dc:creator>
      <dc:date>2017-06-30T19:45:54Z</dc:date>
    </item>
    <item>
      <title>Did you configure the network</title>
      <link>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023867#M42743</link>
      <description>&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN&gt;Did you configure the network for the NMAP scanned hosts in the "Network Discovery" policy?&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;If you mean under Policies | Network Discovery | Advanced | OS and Server Identity Sources did I add an NMAP scanner then yes. &amp;nbsp;There is no other place to configure NMAP scanning for network discovery policies.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jul 2017 17:00:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023867#M42743</guid>
      <dc:creator>pcnudde01</dc:creator>
      <dc:date>2017-07-12T17:00:41Z</dc:date>
    </item>
    <item>
      <title>I now see that it is not</title>
      <link>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023868#M42744</link>
      <description>&lt;P&gt;I now see that it is not possible.&lt;/P&gt;
&lt;P&gt;"&lt;SPAN&gt;A host must exist in the network map before Nmap can append its results to the host profile."&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Source: &lt;A href="http://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Host_Identity_Sources.html#ID-2219-0000055a"&gt;http://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Host_Identity_Sources.html#ID-2219-0000055a&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jul 2017 19:47:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023868#M42744</guid>
      <dc:creator>Dennis Perto</dc:creator>
      <dc:date>2017-07-12T19:47:28Z</dc:date>
    </item>
    <item>
      <title>That's what I figured, thanks</title>
      <link>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023869#M42745</link>
      <description>&lt;P&gt;That's what I figured, thanks. &amp;nbsp;So Cisco touting NMAP as active network discovery is misleading then since NMAP won't actually add hosts it finds to the network map. &amp;nbsp;Seems like this would be an obvious thing to want to do and fairly simple to implement. &amp;nbsp;Maybe I will put in a feature request.&lt;/P&gt;
&lt;P&gt;Thanks for the info.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jul 2017 13:08:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nmap-scanning-from-fmc/m-p/3023869#M42745</guid>
      <dc:creator>pcnudde01</dc:creator>
      <dc:date>2017-07-13T13:08:11Z</dc:date>
    </item>
  </channel>
</rss>

