---
title: "Passive Discovery"
canonical: "https://docs.infoblox.com/space/UniversalAssetInsights/1608615408/Passive%20Discovery"
format: markdown
---
Passive discovery is enabled by default for Infoblox Threat Defense. Passive discovery is a less taxing approach for discovering assets in your network infrastructure. In conjunction with Threat Defense, Passive Discovery uses data from DHCP logs (both NIOS and Universal DDI) along with information discovered from Infoblox-managed endpoints to provide enhanced visibility into your network devices. 

> ⚠️ Discovery data updates for DNS and IPAM are not supported if your account is configured with only the Infoblox Threat Defense license entitlement.

Based on the ingested data, you can view discovered data in the **Security** > **Assets** sub-workspace of the Infoblox Portal, depending on your account’s subscription. For information on the **Security **workspace, see *[Viewing Security Workspace](https://docs.infoblox.com/space/BloxOneCloud/1588592724/Viewing+Security+Workspace)*. For information on the** Assets** workspace, see <u>*[Viewing the Network Assets Sub-Workspace](https://docs.infoblox.com/space/BloxOneCloud/847119201)*</u>.

Depending on whether your account is subscribed to the Universal DDI or Threat Defense licenses, the following table describes the different scenarios you may experience when using Passive Discovery.

|  |  |  |  |
| --- | --- | --- | --- |
|  | **Threat Defense without Universal DDI** | **Threat Defense and Universal DDI** | **Universal DDI without Threat Defense** |
| **Passive Discovery feature** | Available | Available | Available |
| **Default Passive Discovery job ** | Created by default | Created by default | Not created by default. User may create a new job. |
| **Passive Discovery configuration ** | Available | Available | Available |
| **Disable and Delete options for Passive Discovery** | Visible but not configurable. Users will encounter errors if attempt to configure these options. | Visible but not configurable. Users will encounter errors if attempt to configure these options. | Visible and configurable. |
| **State option** | Enabled by default, but not configurable | Enabled by default, but not configurable | Disabled by default, but configurable |
| **Manage Assets options ** | Not available | The **Managed** field is toggled to **OFF **by default. Consequently, all  newly discovered assets are categorized as **Unmanaged**. | The **Managed** field is toggled to **ON** by default. Consequently, all newly discovered assets are categorized as **Managed**. |
| **DHCP for NIOS, DHCP for NIOS-X and Infoblox Endpoint checkboxes** | Enabled by default, but not configurable | Enabled by default, but not configurable | Disabled by default, but configurable |
| **Where to view asset data?** | <u>*[Monitor > Securtiy workspace](https://docs.infoblox.com/space/BloxOneCloud/1588592724/Viewing+Security+Workspace)*</u> | <u>*[Monitor > Securtiy workspace](https://docs.infoblox.com/space/BloxOneCloud/1588592724/Viewing+Security+Workspace)*</u> | <u>*[Monitor > Assets workspace](https://docs.infoblox.com/space/BloxOneCloud/847119201)*</u> |

For information on how to create or edit a Passive Discovery job, see the following:

> Macro (children)