A parent ticket (Vulnerable Container ticket) is created for every image detected and synced by the container API. A child ticket (CS Link Vulnerability ) is created for each unique combination of Container ID and Port.
The Vulnerability tickets are:
If all the Container Vulnerability related tickets under a Vulnerable Container ticket are unlinked and there are no other linked tickets, then the Vulnerable Container ticket closed.
On successful creation of tickets with Ticketing Scheme 5, your container and vulnerability details are displayed as shown below.
Vulnerable Container Ticket:
The table below lists the custom fields you can add for ticketing scheme 5. Refer to Creating Custom Fields to add custom fields to your ticketing scheme.
Issue Type |
Field Name |
Field Type |
Searchable |
Configurations |
---|---|---|---|---|
Link Vulnerable Container
|
Container Id | Text Field (single line) |
Yes |
NA |
Container Name | Text Field (single line) |
Yes |
NA | |
Image Id | Text Field (single line) |
Yes |
NA | |
Host Name | Text Field (single line) |
Yes |
NA | |
Qualys Reported IP Address | Text Field (single line) |
Yes |
NA | |
Container SHA | Text Field (single line) |
Yes |
NA | |
OS Name | Text Field (single line) |
Yes |
NA | |
State | Text Field (single line) |
Yes |
NA | |
Container Created On | Text Field (single line) |
Yes |
NA | |
Container Updated On | Text Field (single line) |
Yes |
NA | |
Container Last Scanned | Text Field (single line) |
Yes |
NA | |
Drift | Text Field (single line) |
Yes |
NA | |
Primary Key | Text Field (read only) |
Yes |
NA | |
CS Link Vulnerability | QID | Number | Yes | NA |
Port | Number | Yes | NA | |
Vulnerable Softwares | Text Field (multi line) | Yes |
Wiki Style Renderer
|
|
Qualys Detection Status | Text Field (mutli line) |
Yes |
NA | |
Qualys Severity | Text Field (single line) |
Yes |
NA | |
Vuln Type | Text Field (single line) | Yes | NA | |
Patch Available | Text Field (single line) |
Yes |
NA | |
Discovery Method | Text Field (single line) |
Yes |
NA | |
Authentication | Text Field (single line) |
Yes |
NA | |
Supported Apps | Text Field (single line) |
Yes |
NA | |
Category |
Number |
Yes |
NA | |
Published Date | Text Field (single line) |
Yes |
NA | |
Qualys Reported CVEs | Text Field (multi line) |
Yes |
NA | |
Qualys Reported CVSSv2 Base | Number |
Yes |
NA | |
Qualys Reported CVSSv2 Temporal | Number | Yes | NA | |
Qualys Reported Access Vector | Text Field (single line) | Yes | NA | |
Qualys Reported CVSSv3.1 Base | Number | Yes | NA | |
Qualys Reported CVSSv3.1 Temporal | Number | Yes | NA | |
Diagnosis | Number | Yes | NA | |
Consequence | Text Field (single line) | Yes | NA | |
Solution | Text Field (multi line) | Yes | NA | |
Impact | Text Field (multi line) | Yes | NA | |
Primary Key | Text Field (read only) | Yes | NA |