Scans (History of Scans) #
Field | Description |
---|---|
id | same thing |
saltminer.scan.id | Unique id for the scan.Note: Used as key field for flow down fields.type: Keywordexample: 123B |
saltminer.scan.criticalsaltminer.scan.highsaltminer.scan.mediumsaltminer.scan.low | System generated sum for the scan for this severityrequired: Yestype: integerexample: 100 |
saltminer.scan.scan_date | Timestamp from the related scanNote: Replaces last_scan_date at the issue level, represents the scan that generated this issuerequired: Yestype: timestampexample: 2018-06-29T12:36:52.430+0000 |
saltminer.scan.report_id | keyword Yes No unique identifier for this assessement 10112 report_id in related issues |
saltminer.scan.assessment_type | Engine category (SAST, DAST, OPEN, PENTEST) SAST Configure allowable valuesrequired: Yestype: keyword |
saltminer.scan.product_type | Source specific type of scan (i.e. SCA, mobile, static, etc.) SCA Not sure if this is redundant or notrequired: Yestype: keyword |
saltminer.scan.product | Product used to run the scanrequired: Yestype: keywordexample: SCA |
saltminer.scan.vendor | Vendor for the scanner used to identify this issuerequired: Yestype: keywordexample: Fortify |
saltminer.scan.rulepacks | Rulepack(s) used to identify vulnerabilities in this scanrequired: Notype: keyword |
SaltMiner Internal fields related to scans | |
saltminer.internal.agent_id | Agent identifier for Sync Agent that was the source of this scanrequired: Yestype: keyword |
Flow down fields #
InventoryAsset #
- saltminer.asset_inv.is_production
- saltminer.asset_inv.name
- saltminer.asset_inv.description
- saltminer.asset_inv.version
- saltminer.asset_inv.attributes
- saltminer.asset_inv.key
Engagements #
For Issues that were found as part of an engagement the following fields flow down
- saltminer.engagement.publish_date
- saltminer.engagement.name
- saltminer.engagement.customer
- saltminer.engagement.summary
- saltminer.engagement.scan_id
- saltminer.engagement.attributes
Assets #
- saltminer.asset.last_scan-days_policy
- saltminer.asset.config_name
- saltminer.asset.source_type
- saltminer.asset.sub_type
- saltminer.asset.is_retired
- saltminer.asset.version_id
- saltminer.asset.asset_type
- saltminer.asset.host
- saltminer.asset.ip
- saltminer.asset.scheme
- saltminer.asset.port
- saltminer.asset.is_production
- saltminer.asset.name
- saltminer.asset.description
- saltminer.asset.version
- saltminer.asset.attributes