SecPod

Learn Search

Search across all Learn content

← Back to Expressions & POVs
Turn Your SanerNow Agent Into A Network Scanner

Turn Your SanerNow Agent Into A Network Scanner

In the IT landscape, workplaces have become more reliant on data and technology. This enabled remote work and communication through devices. However, this has led to the presence of personal information within business systems and cloud platforms. While technology supports businesses, it also expose...

Oct 26, 2023By Siddharth Shanbhag3 min read

In the IT landscape, workplaces have become more reliant on data and technology. This enabled remote work and communication through devices. However, this has led to the presence of personal information within business systems and cloud platforms. While technology supports businesses, it also exposes them to vulnerabilities due to the rising frequency and severity of cyberattacks.

An approach to safeguarding your network involves the practice of network scanning, which is the process of examining network devices and systems to detect known vulnerabilities and security risks. Think of this process as giving the network a full check-up to ensure it can handle any outside problems and stay safe from attacks.

Understanding Network Scanning with SanerNow

The SanerNow platform offers a solution for enterprises that perform vulnerability scans without installing the agents across all their systems. Instead, the SanerNow agent is deployed on a single device within the network, which must be interconnected with all other devices. By following this approach, vulnerabilities and loopholes within devices are assessed by examining their associated port numbers.

Network scanning comprises two categories: Server application scanning and authenticated scanning. Server applications, such as MySQL and MongoDB, have specific port numbers (e.g., port 80, port 8080, port 5320). During this process, the IP addresses of devices designated for scanning are inputted into the agent-installed device. In Authenticated scanning, the user can give the credentials of the device and ask the external agent to scan by logging in from the agent’s host device.

It’s important to note that certain devices, including Routers, Hubs, Switches, Ports, and Firewalls, are not compatible with Agent installation. However, these devices can still undergo scanning by being connected to the agent-installed device.

Additionally, a variant of network scanning referred to as Authenticated scanning exists. This technique permits the scanning of URLs or websites using basic user credentials, such as a User ID and Password. For instance, Linux devices can undergo scanning by utilizing SSH credentials, thereby identifying known vulnerabilities. This method ensures coverage for devices where agent installation is impractical.

Steps to do Network Scanning using SanerNow

  1. Go to Control Panel.
  2. In the Control Panel, click Deployment.
  3. Under Network Scanner, click on Summary.
  4. To designate a SanerNow Agent to perform Network Scanner, follow the three steps: Scanner Selection -> Scan Config -> Scan Policy.
  5. In Summary, from the drop-down menu, select the account.
  6. Now, click on Create new Scanner.
  7. Choose the scanner type: Designate an existing agent to network scanner.
  8. Select a device from the drop-down menu to designate as a network scanner.
  9. In the new scan config, specify Name, Targets, Exclude List, Select Ports.
  10. Specify the ports that is to be scanned. By default, the Default Ports option is selected.
  11. You can manually provide the ports to scan by clicking on the Enter Custom Ports check box.
  12. Schedule scans on a daily, weekly, and monthly basis. By default, the ‘none’ option will be selected.

Best Practices for Network Scanning

  • Get proper authorization before conducting any scanning activity.
  • Define the scope of scanning clearly.
  • Scan thoroughly and prioritize critical vulnerabilities.
  • Keep detailed reports of all devices scanning.
  • Conduct regular scans to stay updated on new vulnerabilities.

Conclusion

By integrating SanerNow’s agent-based network scanning solution into your cybersecurity practices, your organization can proactively identify vulnerabilities and increase your network’s security posture. Following best practices ensures that network scanning is performed responsibly and effectively. Also, SanerNow can remediate the detected vulnerabilities in the network.

Featured Posts

Open The Most Effective Vulnerability Assessment Framework What Makes One Effective
The Most Effective Vulnerability Assessment Framework What Makes One Effective

Point of View

The Most Effective Vulnerability Assessment Framework What Makes One Effective

No single named standard makes a vulnerability assessment framework effective. This piece covers NIST, ISO, and CIS Controls, then breaks down what actually separates a working framework from a checklist, coverage, risk based prioritization, cadence, ownership, and a feedback loop.

Sep 11, 2026

Open Threat and Vulnerability Assessment How Risk Actually Gets Calculated
Threat and Vulnerability Assessment How Risk Actually Gets Calculated

Point of View

Threat and Vulnerability Assessment How Risk Actually Gets Calculated

A vulnerability alone doesn't tell the whole risk story. This piece breaks down how a threat and vulnerability assessment pairs technical weaknesses with real attacker context, walks through the six step process, and covers frameworks like NIST 800-30 and ISO 27005.

Sep 11, 2026

Open Vulnerability Assessment Services: What to Look For
Vulnerability Assessment Services: What to Look For

Point of View

Vulnerability Assessment Services: What to Look For

Choosing a vulnerability assessment provider means asking about actual coverage, scan frequency, and whether findings come with real prioritization or just a CVSS dump. This piece breaks down what strong vulnerability assessment services include, red flags to avoid, and questions to ask before signing.

Sep 11, 2026

Open Agentic AI Vulnerability Assessment What Changes and What Does Not
Agentic AI Vulnerability Assessment What Changes and What Does Not

Point of View

Agentic AI Vulnerability Assessment What Changes and What Does Not

Agentic AI is expanding what a vulnerability assessment needs to cover, autonomous agents bring their own credentials, tool access, and memory, adding a genuinely new asset class alongside servers and endpoints. It's also compressing attacker timelines and introducing risk categories like goal hijacking and tool misuse that don't map to a traditional CVE. But the core discipline hasn't changed: the same lifecycle of scoping, scanning, prioritizing, and remediating still applies, human judgment still drives prioritization, and accountability still sits with the people who deployed the agent, not the agent itself.

Sep 9, 2026