Qualys Container Support
The Qualys Container Support connector allows for seamless integration with Qualys' container security services, enabling automated vulnerability management and container security insights.
Qualys Container Security provides comprehensive visibility into container-related security issues, enabling organizations to enforce compliance and protect their container environments. The Qualys Container Security Connector for Swimlane Turbine allows users to automate the retrieval of container image information, vulnerability reports, and inventory management directly within their security workflows. By integrating with Qualys, security teams can enhance their container security posture, streamline vulnerability management, and maintain an up-to-date inventory of container images, all through the Swimlane Turbine platform.
Prerequisites
To effectively utilize the Qualys Container Support connector with Swimlane, ensure you have the following prerequisites:
- API Key Authentication with the following parameters:
- URL: The endpoint URL for Qualys API services.
- Username: Your Qualys account username.
- Password: Your Qualys account password.
Capabilities
This Connector provides the following capabilities:
- Capabilities
- Go
- Here
- e.g. Manage Firewall Policies instead of listing each individual tasks
Limitations
Include information about known limitations here, including supported or minimum versions, especially known unsupported versions.
Asset Setup
The content here should discuss asset setup in a conversational manner. Be sure to include any known login and test connection errors.
Tasks Setup
Special task setup as needed depending on plugin, exclude if empty.
Known available allowed input options from enum type selection
Notes
- Any other notes not fitting other sections go here.
- Any reference URLs to external docs or other resources
Configurations
API Key Authentication
Authenticates using an API Key
Configuration Parameters
Parameter | Description | Type | Required |
|---|---|---|---|
url | A URL to the target host. | string | Required |
username | Username | string | Required |
password | Password | string | Required |
verify_ssl | Verify SSL certificate | boolean | Optional |
http_proxy | A proxy to route requests through. | string | Optional |
Actions
Get Container Image Info
Retrieve detailed information for a specific container image using its SHA identifier in Qualys Container Support.
Endpoint
- URL: /csapi/v1.3/images/{{image_sha}}
- Method: GET
Input
Argument Name | Type | Required | Description |
|---|---|---|---|
path_parameters.image_sha | string | Required | Parameters for the Get Container Image Info action |
parameters.scanDetails | string | Optional | Scan details to fetch. Valid values are malware, secrets |
Input Example
{"path_parameters":{"image_sha":"string"},"parameters":{"scanDetails":"ALL"}}
Output
Parameter | Type | Description |
|---|---|---|
status_code | number | HTTP status code of the response |
reason | string | Response reason phrase |
created | string | Output field: created |
updated | string | Output field: updated |
lastUsedDate | string | Date value |
author | string | Output field: author |
repo | array | Output field: repo |
repo.registry | string | Output field: repo.registry |
repo.tag | string | Output field: repo.tag |
repo.repository | string | Output field: repo.repository |
repoDigests | ['array', 'null'] | Output field: repoDigests |
label | array | Output field: label |
label.key | string | Output field: label.key |
label.value | string | Value for the parameter |
uuid | string | Unique identifier |
sha | string | Output field: sha |
operatingSystem | string | Output field: operatingSystem |
customerUuid | string | Unique identifier |
dockerVersion | string | Output field: dockerVersion |
size | number | Output field: size |
layers | array | Output field: layers |
layers.size | ['number', 'null'] | Output field: layers.size |
layers.createdBy | string | Output field: layers.createdBy |
layers.created | string | Output field: layers.created |
layers.id | string | Unique identifier |
Output Example
{"status_code":200,"response_headers":{},"reason":"OK","json_body":{}}
Get Container Image Vulnerabilities
Retrieve a detailed vulnerability report for a specific container image by its SHA identifier in Qualys Container Support.
Endpoint
- URL: /csapi/v1.3/images/{{image_sha}}/vuln
- Method: GET
Input
Argument Name | Type | Required | Description |
|---|---|---|---|
path_parameters.image_sha | string | Required | Parameters for the Get Container Image Vulnerabilities action |
parameters.type | string | Optional | Type of vulnerabilities to retrieve |
parameters.filter | string | Optional | Specify vulnerability filter |
Input Example
{"path_parameters":{"image_sha":"string"},"parameters":{"type":"ALL","filter":"string"}}
Output
Parameter | Type | Description |
|---|---|---|
status_code | number | HTTP status code of the response |
reason | string | Response reason phrase |
details | array | Image vulnerability details |
vulnSummary | object | Output field: vulnSummary |
vulnSummary.confirmed | object | Output field: vulnSummary.confirmed |
vulnSummary.confirmed.sev1Count | number | Count value |
vulnSummary.confirmed.sev2Count | number | Count value |
vulnSummary.confirmed.sev3Count | number | Count value |
vulnSummary.confirmed.sev4Count | number | Count value |
vulnSummary.confirmed.sev5Count | number | Count value |
vulnSummary.potential | object | Output field: vulnSummary.potential |
vulnSummary.potential.sev1Count | number | Count value |
vulnSummary.potential.sev2Count | number | Count value |
vulnSummary.potential.sev3Count | number | Count value |
vulnSummary.potential.sev4Count | number | Count value |
vulnSummary.potential.sev5Count | number | Count value |
vulnSummary.patchAvailability | object | Output field: vulnSummary.patchAvailability |
vulnSummary.patchAvailability.confirmed | object | Output field: vulnSummary.patchAvailability.confirmed |
vulnSummary.patchAvailability.confirmed.sev1Count | number | Count value |
vulnSummary.patchAvailability.confirmed.sev2Count | number | Count value |
vulnSummary.patchAvailability.confirmed.sev3Count | number | Count value |
vulnSummary.patchAvailability.confirmed.sev4Count | number | Count value |
vulnSummary.patchAvailability.confirmed.sev5Count | number | Count value |
vulnSummary.patchAvailability.potential | object | Output field: vulnSummary.patchAvailability.potential |
vulnSummary.patchAvailability.potential.sev1Count | number | Count value |
Output Example
{"status_code":200,"response_headers":{},"reason":"OK","json_body":{}}
List Container Images
Retrieve a comprehensive list of container images from a Qualys account, with customizable report types via the 'action' parameter.
Endpoint
- URL: /csapi/v1.3/images
- Method: GET
Input
Argument Name | Type | Required | Description |
|---|---|---|---|
parameters.pageNumber | number | Optional | Specify page number |
parameters.pageSize | number | Optional | Specify page size |
parameters.sort | string | Optional | Specifies the sort criteria |
Input Example
{"parameters":{"pageNumber":123,"pageSize":123,"sort":"string"}}
Output
Parameter | Type | Description |
|---|---|---|
status_code | number | HTTP status code of the response |
reason | string | Response reason phrase |
data | array | List of Images |
count | number | Number of images in response |
Output Example
{"status_code":200,"response_headers":{},"reason":"OK","json_body":{}}
Response Headers
Header | Description | Example |
|---|---|---|
Content-Type | The media type of the resource | application/json |
Date | The date and time at which the message was originated | Thu, 01 Jan 2024 00:00:00 GMT |