User Guide

Supported Targets

Targets are computers, network devices, hypervisors, and cloud resources that AlloyScan can scan and audit.

Agentless scan and audit runs through an Audit Service. Audit Agents apply only to computers.

Network access requirements vary by target type and audit method.

Computers

Physical and virtual Windows, Linux, and macOS computers can be audited either agentlessly through an Audit Service or by an Audit Agent installed on the endpoint. Agent-based audit requires only outbound HTTPS from the endpoint. Agentless audit requirements are listed for each platform below.

Windows computers

Requirement Details
Supported versions Windows 10 or later; Windows Server 2016 or later
Agentless audit Requires WinRM access from the Audit Service.
Windows targets must be in the same Active Directory domain as the Audit Service host. Cross-domain or workgroup Windows targets must be audited through an Audit Agent.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

Linux computers

Requirement Details
Supported distributions Debian-based, Red Hat-based, and other popular Linux distributions, including independent distributions like openSUSE
Required packages net-tools, inxi, libcap
UUID collection The target must expose /sys/class/dmi/id/product_uuid or provide accessible dmidecode.
Agentless audit Requires the SSH server service running on the target.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

macOS computers

Requirement Details
Supported versions macOS 10.7 Lion or later
Agentless audit Requires the SSH server service running on the target.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

Network devices

Network devices are scanned and audited through an Audit Service.

SNMP devices

Requirement Details
Supported protocol versions SNMPv1, SNMPv2c, SNMPv3
Agentless audit Requires SNMP access from the Audit Service.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

Hypervisors

Hypervisors are scanned and audited through an Audit Service.

Microsoft Hyper-V

Requirement Details
Supported versions Windows Server 2016 or later; Hyper-V Server editions of the same generation
Agentless audit Requires Hyper-V API access from the Audit Service.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

VMware ESXi

Requirement Details
Supported versions ESXi 3.5 U5 or later
Agentless audit Requires ESXi API access from the Audit Service. For ESXi 6.5, WS-Management services must be enabled on each host.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

Xen

Requirement Details
Supported versions Version 3.1 or later
Agentless audit Requires the SSH server service running on the host.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

Citrix Hypervisor

Requirement Details
Supported versions XenServer 5.6.1 SP2 or later
Agentless audit Requires the SSH server service running on the host.
Required ports must be open between the Audit Service host and the target. See Required Ports Reference.

Cloud resources

Cloud resources are scanned and audited through cloud Segments and provider APIs. An Audit Service runs the cloud audit scripts.

Provider Status
AWS Available as a Preview cloud Segment
Azure Available as a Preview cloud Segment
Google Cloud Available as a Preview cloud Segment

NOTE: Cloud Segments are in Preview and subject to change.