Service Graph Connector for Qualys APIs
Data from the Qualys data source fields is imported with the Global Asset API and the Asset Management and Tagging API.
Global Asset API
- A Qualys Cybersecurity Asset Management (CSAM) license is required.
- Asset information includes details such as Hardware Category and OS Category.
Asset Management and Tagging API
- A CSAM license is not required
- Asset information does not include details about Hardware Category and OS Category.
Mapped attributes
The following table compares what data is imported by the two APIs. The sections after the table list data imported by the Global asset API that is not supported by the Asset Management and Tagging API.
| Global Asset API | Asset Management and Tagging API |
|---|---|
| Mapped attributesassetId assetUUID hostId lastModifiedDate agentId createdDate sensorLastUpdatedDate assetType address dnsName assetName netbiosName timeZone biosDescription lastBoot totalMemory cpuCount lastLoggedOnUser domainRole hwUUID biosSerialNumber biosAssetTag isContainerHost | Mapped attributescreated name dnsHostName fqdn os manufacturer tracking method netbios timezone network guid IsDockerHost modified lastVulnScan model cloudProvider type qwebHostId criticalSocre lastSystemBoot domain lastLogOnUser lastComplianceScan |
| AWS Cloud detailsaccountId availabilityZone hasAgent hostname imageId instanceId instanceState privateDNS privateIpAddress instanceType qualysScanner kernelId launchdate region.code region.name spotInstance subnetId vpcId tags.key tags.value | AWS Cloud detailsinstanceId privateDnsName privateIpAddress instanceState monitoringEnabled region accountId availabilityZone instance\_type AWS Cloud tag details - key - value |
| MS Azure Cloud detailsvmId state name imagePublisher imageVersion offer location platform resourceGroupName size subnet subscriptionId virtualNetwork | MS Azure Cloud detailsresourceGroupName vmId state subscriptionId location image\_id publisher version offer vm\_size subnet\_id vpc\_id MS Azure Cloud tag details - key - value |
| Network interface detailshostname addressIpV4 addressIpV6 macAddress interfaceName dnsAddress gatewayAddress manufacturer macVendorIntroDate netmask addresses | Network interface detailsaddress host\_name interface\_name macAddress gatewayAddress interface\_id type |
| Software detailstoken1 token2 uniqueKey publisher installDate id installPath lastUseDate authorization authorizationDetectionScore | Software detailsversion name |
| Volume detailsname free size | Volume detailsname free size |
| Open port detailsport description protocol detectedService firstFound lastUpdated | Open port detailsport protocol serviceName service\_id |
| Processor detailsdescription speed numCPUs noOfSocket threadsPerCore coresPerSocket multithreadingStatus | Processor detailsname speed |
| Tag detailstagId tagName foregroundColor backgroundColor businessImpact criticalityScore | Asset tag detailsid name |
| Agent detailsversion configurationProfile activations connectedFrom lastActivity lastCheckedIn lastInventory udcManifestAssigned errorStatus | Agent detailsagentVersion agentLastCheckIn status platform connectedFrom agentId AgentConfigurationName ChirpStatus |
Additional Global asset API details
The following sections list data imported by the Global asset API that is not supported by the Asset Management and Tagging API.
Global asset API OS details
- fullName
- version
- publisher
- osName
- category
- category1
- category2
- productName
- edition
- marketVersion
- update
- architecture
- productUrl
- productFamily
- installDate
- release
Global asset API OS lifecycle
OS lifecycle details
- gaDate
- eolDate
- eosDate
- stage
- lifeCycleConfidence
- eolSupportStage
- eosSupportStage
Global asset API OS taxonomy
OS Taxonomy details
- id
- name
- category1
- category2
Global asset API hardware
Hardware details
- fullName
- category
- category1
- category2
- manufacturer
- productName
- model
- productUrl
- productFamily
Global asset API hardware lifecycle
Hardware lifecycle details
- introDate
- gaDate
- eosDate
- obsoleteDate
- stage
- lifeCycleConfidence
Global asset API taxonomy
Hardware taxonomy details
- id
- name
- category1
- category2
Global asset API sensor
Sensor details
- activatedForModules
- pendingActivationForModules
- lastVMScan
- lastComplianceScan
- lastFullScan
- lastVmScanDateScanner
- lastVmScanDateAgent
- lastPcScanDateScanner
- lastPcScanDateAgent
- firstEasmScanDate
- lastEasmScanDate
Global asset API service
Service details
- name
- status
- description
Global asset API last location
Last location details
- city
- state
- country
- name
- continent
- postal
Global asset API criticality
Criticality details
- score
- isDefault
- lastUpdated
Global asset API processor
Processor details
- description
- speed
- numCPUs
- noOfSocket
- threadsPerCore
- coresPerSocket
- multithreadingStatus
Global asset API business information
Business information details
- businessAppListData
- riskScore
- passiveSensor
- domain
- subdomain
- missingSoftware
- whois
- organizationName
- isp
- asn
- easmTags
- hostingCategory1
- customAttributes