Re-evaluating discovered items
When new data is received on a discovered item, the discovered item is not immediately re-evaluated. On receiving new data, the reevaluate_ci option is set to true by default.
The scheduled job Re-apply CI Lookup Rules on the Changed Discovered items evaluates all the discovered items whose source data is being changed by the scanner. It re-processes the discovered items and updates the vulnerable items related to the discovered item whose source data is changed. The value of this scheduled job is On Demand by default.
To avoid conflicts with an in-progress vulnerability integration run, the job checks whether such a run is active and pauses itself if one starts, processing up to 1,000 discovered items per execution. The job only reprocesses discovered items whose last scan date, last compliance scan date, or non-infra equivalent falls within the last 90 days, and it excludes discovered items that were manually matched to a configuration item.