Skip to content

Scan the open ports of discovered devices (port/service scanning + service-fingerprint signal) #43

Description

@guycorbaz

What is wanted

Scan the open ports of discovered network devices, so that what a device exposes becomes part
of what opencmdb observes about it.

Requested by the maintainer on 2026-07-28.

This is already in the plan — recorded here so the plan has a requester behind it

prd.md places "port/service scanning + service-fingerprint identity signal" in Phase 2
(Growth)
, twice (prd.md:839 and prd.md:1054). This issue does not open new scope; it records
that the item has a real asker, which is the difference between a roadmap line and a requirement.

It also carries a sequencing constraint the PRD states explicitly and that must not be lost:

the MVP signal set is hardware address + hostname + IP/lease history + connection topology, with
service fingerprint sequenced alongside Growth's service scanning"a coherence dependency,
not an effort cut."
(prd.md:829-831)

So the two halves ship together or not at all: a port scanner whose results never reach the identity
engine is inventory decoration, and a service-fingerprint signal with no scanner behind it has no
input.

Open questions, not decided here

Not proposed for MVP

Epic 5 (interface identity) is in progress and the MVP signal set is closed. This belongs to Growth,
after the identity engine exists — the PRD's sequencing is the reason, not capacity.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions