Detecting Network Change
Tenable has recently added several TASL correlation rules which detect a variety of network changes. These rules automatically detect:
- Changes to servers such as new software and added patches
- Changes to users such as adding/removing a user, changing their passwords and disabling their accounts
- Changes to network devices such as saving new configs of a router or switch
- Changes to the network such as new hosts being added
Here is a screen shot of what these look like under the Security Center:
These new TASLs also compliment the existing scripts which detect user account to host relationships and alerting when new Ethernet addresses are discovered in DHCP logs and logs from Tenable's Passive Vulnerability Scanner.
Learn more
- Passive Network Monitoring

Tenable One
Request a demo
The world’s leading AI-powered exposure management platform.
Thank You
Thank you for your interest in Tenable One.
A representative will be in touch soon.
Form ID: 7469
Form Name: one-eval
Form Class: c-form form-panel__global-form c-form--mkto js-mkto-no-css js-form-hanging-label c-form--hide-comments
Form Wrapper ID: one-eval-form-wrapper
Confirmation Class: one-eval-confirmform-modal
Simulate Success