VMDR Scan Data
To configure settings for collecting VMDR scan data, perform the following steps:
-
Navigate to Inputs and click Create New Input.
The form is displayed to add the inputs.
-
In the Name field, enter a unique name for the data input.
-
In the Interval field, specify the polling interval in seconds.
-
From the Index drop-down list, select the Splunk index where the collected data will be stored.
-
From the Account to use drop-down list, select the Qualys account to be used for data collection.
-
In the Start Date field, optionally enter a UTC timestamp in RFC3339 format to define the initial data collection window. By default, it pulls data from the last 30 days.
-
Select the Use multi-threading check box to enable multi-threaded data collection. By default, it is unchecked.
-
In the Number of threads field, enter the number of threads to use for data collection. A maximum of 10 threads can be configured.
-
Click Add to create the VMDR data input.
Source Types for Searching VMDR Scan Data in Splunk
You can use source types to search for VMDR data that has been pulled into Splunk. For more information, refer to Source Types for Searching your Apps Data.