External Repositories
An external repository lets you access a local repository from another Tenable Security Center deployment for reporting purposes. External repository data is read-only. You cannot use an external repository as the Import Repository for active scans.
-
Offline repositories allow you to share repository data from one Tenable Security Center deployment to your primary Tenable Security Center deployment via manual export and import (a .tar.gz archive file).
-
Remote repositories allow you to share repository data from one Tenable Security Center deployment to your primary Tenable Security Center deployment via an SSH session.
About Offline and Remote Repositories
| Task | Offline Repository | Remote Repository |
|---|---|---|
| Data transfer | Manual — export a .tar.gz archive from one deployment and import it to the other. | Automatic — Tenable Security Center syncs data over SSH on a configured schedule. |
| Typical use case | Air-gapped deployments with no network path between instances. For more information, see Considerations for Air-Gapped Environments |
Networked deployments where both instances can communicate over SSH. For large enterprise deployments, see Tiered Remote Repositories. |
| Version requirement | None. | Both Tenable Security Center deployments must run the same version. |
| Data freshness | Updated manually each time you export and import. | Updated automatically on the configured schedule. |
| Key limitation | Each import overwrites previously imported data. You cannot combine data from multiple export files in a single offline repository. | Both deployments must be reachable over SSH. |
Configure an Offline Repository
To fully configure an offline repository:
- Add an offline repository to your primary Tenable Security Center deployment.
- Export a repository from your other Tenable Security Center deployment.
- Import the repository to the offline repository on your primary Tenable Security Center deployment.
Configure a Remote Repository
To fully configure a remote repository:
- Add a remote repository to your primary Tenable Security Center deployment, specifying the IP address of the remote instance.
- When prompted, provide credentials for an administrator account on the remote Tenable Security Center. The deployments exchange SSH keys and the available repositories populate automatically.
- Select the repository to sync and configure the update schedule.
For more information, see