Are VA scans normally done on servers zones/subnets only or includes users & Management zone?
What's the best practice out there? Only scan server zones ie
DMZ, App server (internal) zone & DB zone?
What about servers' Management zone & PCs/users zones?
Can I say the reasons PCs /users subnets are not being scanned
because these are of low critical devices and to scan them will
take days (we have 2800 PCs) ?
in our headquarter, there are 30000 PCs (& 1200 servers) : I can't imagine scanning
30000 PCs/laptops considering nowadays the PCs have the sizing with similar number
of files/services as servers
30000 PCs/laptops considering nowadays the PCs have the sizing with similar number
of files/services as servers