Set filtering for the Wiz Host Test Results Integration
Set the filtering values to import Wiz host test results.
始める前に
Role required: sn_vul_wiz.configure_integration
手順
- Navigate to All > Wiz Vulnerability Integration > Administration > Configuration.
- Select the Host Test Results Configuration tab.
-
Fill in the fields.
For some fields, you can specify multiple values. --None-- is the (default). If --None-- remains selected for a field, no data is imported for this field.
If displayed select the lock icons (
) and (
) to edit and lock your edits.
Select the Add/Remove multiple icon (
) to open the Edit members modal.
Field Description Status Filter by status: - --None--
- OPEN
- RESOLVED
Cloud platform Configuration findings by Cloud platform. You can specify multiple values, for example, AWS, GitHub, Terraform, OpenAI, GKE, OKE, EKS, AKS. Severity Choose one for Severity filtering: - --None--
- LOW
- MEDIUM
- HIGH
- CRITICAL
- NONE - Return findings with no available severity values.
You might prefer to start with HIGH or CRITICAL to limit your import to findings of critical importance.
Resource Status Specify by status: - --None--
- Active
- Error
- Inactive
Framework Category Enter security frameworks, security subcategories, or security categories. You can specify multiple values. Resource type Select Add/Remove multiple icon to display the modal. Move your choices to the right column and select Save. Or, search for an asset target record type, for example, FIREWALL. You also have the open to add a new resource type record.
Native type Specify findings based on the native type of the cloud resource, for example, bucket. Subscription ID Specify by entering subscription ID. You can specify multiple values in an array. First Pagination. Enter a value. You might prefer to start with 500. -
Select Save and test.
If the credentials have been saved and validated successfully a message is displayed. You can select filtering for another integration import.