Searching for Assets

You can use search tokens to search for asset information on Asset tab.

asset:(assetInterface.address

Use a text value ##### to specify the host IP address you’re interested in.

Example

Show assets with this IP address

asset:(assetInterface.address: 10.20.30.40)

asset:(assetInterface.hostname

Use a text value ##### to specify the interface hostname you’re interested in.

Example

Show assets that have this hostname

asset:(assetInterface.hostname: xpsp2-jp-26-111)

asset:(name

Use a text value ##### to specify the asset name you’re interested in.

Example

Show assets that have this asset name

asset:(name: server1)

asset:(netbiosName

Use a text value ##### to specify the host NetBios name you’re interested in.

Example

Show assets that have this host NetBios name

asset:(netbiosName: server1)

asset:(operatingSystem

Use quotes or backticks within values to help you find the operating system you're looking for.

Examples

Show any findings with this OS name

asset:(operatingSystem: Windows 2012)

Show any findings that contain components of OS name

asset:(operatingSystem: "Windows 2012")

Show any findings that match exact value "Windows 2012"

asset:(operatingSystem: `Windows 2012`)

assets:(tags.name

Use a text value ##### to specify the asset tag you’re interested in.

Example

Show assets that have this asset tag

assets:(tags.name: prod-dmz)

certificate:(archiveReason

Use a text value ##### to list all assets with certificates that were archived for the specified reason.

Example

Show assets with certificates that were archived with reason: Revoked

certificate:(archiveReason: Revoked)

certificate:(approved

Use the values true | false to find certificates from approved CAs.

Example

Show assets with certificates that have approval status true from approved CAs

certificate:(approved: true)

certificate:(certhash

Use a text value ##### to specify certificate fingerprint of the certificates you are looking for.

Example

Show certificates that have this hash value

certificate:(certhash: 20e1541486f2cd405559d8483a3663f2a77c3cf93c72f4f915259f084f814221)

certificate:(dn

Use a text value ##### to list all certificates that have the specified subject identifier in the certificate subject distinguished name (DN).

Example

Show certificates that have this subject identifier in the distinguished name.

certificate:(dn: ST=California)

certificate:(expiryGroup

Use quotes or backticks within values to help you filter certificates according to expired time. Values can be:"Expired", "In 30 Days", "In 60 Days", "In 90 Days"

Example

Show any findings which expired in last 30 days

certificate:(expiryGroup: "In 30 Days")

certificate:(issuer.country

Use a text value ##### to specify the country mentioned in the issuer distinguished name you’re interested in.

Example

Show assets with certificates that have this country in issuer DN

certificate:(issuer.country: US)

certificate:(issuer.name

Use a text value ##### to specify name of the issuing certificate authority you're interested in.

Example

Show assets with certificates having this issuing authority name

certificate:(issuer.name: Symantec Class 3 EV SSL CA - G3)

certificate:(issuer.organization

Use a text value ##### to specify the organization mentioned in the issuer distinguished name you’re interested in.

Example

Show assets with certificates that have this organization in issuer DN

certificate:(issuer.organization: Symantec Corporation)

certificate:(issuer.organizationUnit

Use a text value ##### to specify the organization unit mentioned in the issuer distinguished name you’re interested in.

Example

Show assets with certificates that have this organization unit in issuer DN

certificate:(issuer.organizationUnit: Symantec Trust Network)

certificate:(issuerCategory

Use the values Self-signed | CA to specify the category of certificate you’re interested in.

Example

Show assets with DigiCert SHA2 Extended Validation Server CA certificates

certificate:(issuerCategory: DigiCert SHA2 Extended Validation Server CA )

certificate:(keySize

Use a text value ##### to specify the key length of a certificate.

Example

Show assets with 2048-bit certificates

certificate:(keySize: 2048)

certificate:(selfSigned

Use the values true | false to find assets with certificates that are self-signed.

Example

Show assets with certificates that are self-signed

certificate:(selfSigned: true)

certificate:(signatureAlgorithm

Use a text value ##### to specify the signing algorithm for a certificate.

Example

Show certificates that use this signature algorithm

certificate:(signatureAlgorithm: SHA256withRSA)

certificate:(validFrom

Use a date range or specific date to define validation date of the certificates you are looking for.

Examples

Show certificates that are valid within certain dates

certificate:(validFrom: [2018-06-15 ... 2018-06-30])

Show certificates that are valid on a specific date

certificate:(validFrom: '2017-12-14')

certificate:(validTo

Use a date range or specific date to define expiration date of the certificates you are looking for.

Examples

Show assets with certificates that are expiring within certain dates

certificate:(validTo: [2018-06-15 ... 2018-06-30])

Show assets with certificates that are expiring on a specific date

certificate:(validTo: '2017-12-14')

certificate:(isRenewable

Use the values true | false to find assets with certificates that can only be renewed with Qualys. Certificates can be renewed with Qualys if they are issued by a DigiCert CA and are expiring in next 90 days or are already expired.

Example

Show assets with certificates that are renewable with Qualys

certificate:(isRenewable: true)

certificate:(expiryGroup

Use quotes or backticks within values to help you filter certificates according to expired time. Values can be:"Expired" or "In n Days" where "n" is any number

Examples

Show certificates which expired in last 20 days

certificate:(expiryGroup: "In 20 Days")

Show all expired certificates in your subscription

certificate:(expiryGroup: "Expired")

certificate:(subject.country

Use a text value ##### to specify the country mentioned in the subject distinguished name you’re interested in.

Example

Show assets that have this country in subject DN

certificate:(subject.country: US)

certificate:(subject.locality

Use a text value ##### to specify the locality mentioned in the subject distinguished name you’re interested in.

Example

Show assets that have this locality in subject DN

certificate:(subject.locality: Redwood City)

certificate:(subject.name

Use a text value ##### to define the certificate name you're interested in.

Example

Show assets that have certificates with this name

certificate:(subject.name: www.qualys.com)

certificate:(subject.organization

Use a text value ##### to specify the organization mentioned in the subject distinguished name you’re interested in.

Example

Show assets with certificates that have this organization in subject DN

certificate:(subject.organization: Qualys, Inc.)

certificate:(subject.state

Use a text value ##### to specify the state mentioned in the subject distinguished name you’re interested in.

Example

Show assets with certificates that have this state in subject DN

certificate:(subject.state: California)

certificate:(subjectAlternativeNames.dnsName

Use a text value ##### show the DNS Name in Certificate Subject Alternate Name (SAN).

Example

Show assets that have the specified DNS Name in Certificate SAN

certificate:(subjectAlternativeNames.dnsName: www.qualys.com)

certificate:(subjectAlternativeNames.ipAddress

Use a text value ##### to show the IP address in Certificate Subject Alternate Name (SAN).

Example

Show assets that have the specified the IP address in Certificate SAN

certificate:(subjectAlternativeNames.ipAddress: 10.113.197.210)

certificate:(validity

Use an integer value ##### to search the certificates you are looking for based on their validity.

Examples

Show all assets with certificates whose validity is greater than 200 days

certificate:(validity > 200)

Show all assets with certificates whose validity is less than 200 days

certificate:(validity < 200d)

Show all certificates whose validity is greater than 3 months. Here each month is considered as 30 days.

certificate:(validity > 3m)

Show all certificates whose validity is greater than 1 year. Here each year is considered as 365 days.

certificate:(validity > 1y)

instance:(cipherSuites.value

Use a text value ##### to list the assets that have cipher suits enabled in a SSL/TLS instance.

Example

Show assets that have this cipher suit enabled in the SSL/TLS instance

instance:(cipherSuites.value: DES-CBC3-SHA)

instance:(fqdn

Use a text value ##### to specify host FQDN of the asset you’re interested in.

Example

Show assets that have this host FQDN

instance:(fqdn: server1.qualys.com)

instance:(grade

Use a text value ##### to specify the Certificate Grade for an instance on the host you’re interested in.

Example

Show assets that have this Certificate Grade for an instance on the host

instance:(grade: B)

instance:(port

Use an integer value ##### to specify the listening port you’re interested in.

Example

Show assets that have this listening port open

instance:(port: 443)

certificate.instance.sslProtocols

Use a value ##### to specify SSL/TLS protocols you’re interested in.

Example

Show assets that have this SSL/TLS protocol enabled

instance:(sslProtocols: TLSv1.2)

instance:(service

Use a text value ##### to specify the service you’re interested in.

Example

Show assets that have this service

instance:(service: SMTP)

instance:(vulns.qid

Use an integer value ##### to specify the vulnerability QID you’re interested in.

Example

Show assets that have this vulnerability QID

instance:(vulns.qid: 38603)

instance:(vulns.severity

Use an integer value ##### to specify the vulnerability severity you’re interested in.

Example

Show assets that have this vulnerability severity

instance:(vulns.severity: 3)

instance:(vulns.title

Use a text value ##### to specify vulnerability title you’re interested in.

Example

Show assets that have POODLE in the vulnerability title

instance:(vulns.title: POODLE)

certificate.request.type

Use the values ENROLLMENT | RENEWAL to specify the type of your certificate request.

Example

Show all certificates requested for renewal

certificate.request.type: RENEWAL

certificate.request.cn

Use a text value ##### to specify the common name of the certificate you’re interested in.

Example

Show all certificates with common name certificate.qualys-demo.com

certificate.request.cn: certificate.qualys-demo.com

certificate.request.date

Use a date range or specific date to define when certificates were requested.

Examples

Show findings with certificates requested within certain dates

certificate.request.date: [2017-06-15 ... 2017-06-30]

Show findings with certificates requested starting 2017-06-22, ending 1 month ago

certificate.request.date: [2017-06-22 ... now-1M]

Show findings with certificates requested starting 2 weeks ago, ending 1 second ago

certificate.request.date: [now-2w ... now-1s]

Show findings with certificates requested on specific date

certificate.request.date: '2017-06-14'

certificate.request.status

Use quotes or backticks within values to help you find the certificate request status you're looking for. Status values can be: "SUBMITTED", "APPROVED", "REJECTED", "POSTED", "DENIED"

Examples

Show any findings with this status

certificate.request.status: SUBMITTED

Show any findings that match exact value

certificate.request.status: "SUBMITTED"