Network device security audit
Denetta Network Device Audit is the module that reads a site’s switches and routers with SNMP GET/WALK and read-only SSH commands and audits them with 14 expert rules; with 19 vendor profiles it recognises a mixed vendor estate and shows every finding’s remediation in the device vendor’s own syntax.
Which checks are performed?
Example checks:
- Default SNMP community name (public/private); SNMP v1/v2c instead of v3
- Telnet or unencrypted HTTP management interface
- Management access not restricted by source IP
- Missing central logging (syslog) and NTP
- Missing port security / 802.1X and STP protection on access ports
- Firmware past vendor support (EOL/EOS)
Which vendors does it recognise?
Cisco IOS/IOS-XE, NX-OS and Small Business; HPE Aruba AOS-S, AOS-CX and Instant On; UniFi, MikroTik, TP-Link Omada, Huawei, Juniper, Dell, Extreme, Netgear, Zyxel, Meraki, FortiSwitch and more — 19 vendor profiles in total. A profile is data: each vendor’s detection signature and read-only command set live in a single file.
A device whose vendor cannot be detected is reported as a “visibility gap”, not “out of scope”; it is never silently shown as clean. On cloud-managed SMB hardware without a CLI, collection uses SNMP and CLI-dependent checks appear as visibility gaps.
What is required?
Network devices live on the customer LAN and are not reachable from the core, so this module needs the site’s collector and a least-privilege read account for the devices (SNMP community/v3 user or a read-only SSH account). Access points, printers, cameras and IoT devices are not billed.