🌙
 

Subscribe to the Taegis™ VDR Documentation RSS Feed at .

Learn more about RSS readers or RSS browser extensions.

Getting Started with VDR

This article describes the first steps to get started with Secureworks® Taegis™ VDR. The VDR Onboarding Overview also provides guidance for new VDR users during the onboarding process.

Adding Internet-facing Perimeter Assets

  1. Navigate to the Auto Discovery view.
  2. Select the + icon at the upper right corner to add a new public Internet-facing IP range.
  3. Specify the IP range in CIDR notation in the modal that appears, leaving the Edge Service selection to None (Internet).
  4. Leave other settings at their default values.
  5. Select Add and Discover Now.
  6. Don’t forget to safelist our public IP range 216.9.204.0/22 if you have protections in place (IPS, WAF, DDoS, etc.).

Adding Internal Assets

Request a New Edge Service

  1. Download a Generic VM image that fits your environment (extract using 7-zip).
  2. Log in to your VDR account, and navigate to the settings by selecting the account circle in the upper right and choosing Settings.
  3. Select Edge Services from System settings in the left menu.
  4. Select the Request Edge Service button at the upper right corner to request the creation of a new Edge Service.
  5. In the window that appears:
    • Select the Configuration Only option.
    • Give your Edge Service a Name and a Description.
    • Select Submit.
  6. Wait a couple of minutes for a cogwheel icon to appear at the right of your Edge Service row in VDR, and then select the icon to copy your Configuration URL.

Install This New Edge Service Internally

  1. Follow the Edge Service Setup Instructions.
  2. Create a new virtual machine with enough RAM, CPU, and using the previously downloaded generic disk image.
  3. Make sure this new virtual machine has an initial DHCP network address (as specified in the Setup Instructions).
  4. Boot this Edge Service VM.
  5. Connect to the temporary configuration interface of the Edge Service VM and use your Configuration URL to finish the setup.
  6. Once set up, reboot the VM and wait five minutes to make sure it connects to VDR. The console status display and the icon indicator in VDR should be green.

Add Your Internal (RFC1918) IP Ranges

  1. Navigate to the Auto Discovery view.
  2. Select the + icon at the upper right corner to add your internal (RFC1918) IP range.
  3. Specify the IP range in CIDR notation in the modal that appears, and select the newly created Edge Service in the Edge Service section. The connectivity icon should be green.
  4. Leave other settings at their default values.
  5. Select Add and Discover Now.

Managing Vulnerabilities

By Using the Vulnerabilities View

  1. Navigate to the Vulnerabilities view.
  2. Ensure that the vulnerabilities are sorted by "Priority" with the priority label "1" at top of the list.
  3. Start by consulting vulnerabilities in that prioritized order, with the following simple workflow:

 

On this page: