sevco.io

Source Inventory Overview

Overview

Source Inventory pages are integration-specific and only display asset data from a single Source integration-type. Source Inventory pages can be used to search for and monitor assets associated with a Source. Additionally, you can also review information about a Source's health (Status) and reconfigure it as-needed.

Source Inventory Page To access an Source Inventory page, select the Source Inventory icon on the Navigation bar then select the Integration you would like to view information about from the dropdown.

Source Inventory Menu

⚠️

Make sure to pay attention to the Devices, Users, and Software tabs at the top of the Source Inventory dropdown, as Integrations are separated by asset type.


Filters & Configuration Panel

The left-panel of the page contains filters you can use to search for specific Integration assets.

Asset TypeFilters
Devices• OS Platforms
• OS Releases
• MAC Manufacturers
Software• Software Vendor
• OS Platform
• OS Release
Users• Groups
• Roles
• Domains
Vulnerabilities• Severity
• OS Platform
• OS Release
• Category

It is also where you can access an Integration's configuration panel. Select the Configure link to view this information.

Selecting Configure Link to view logs

Event Types

  • AttributeValueAdd – An attribute value has either been added or updated. (i.e. an updated agent version being added after a Source update)
  • AttributeValueRemove – An attribute value has been removed. Typically, this happens before an attribute value is updated.
  • SourceMembershipAdd – An asset has been observed by a Source for the first time.
  • SourceMembershipRemove – An asset is no longer being observed by the Source. (i.e. a Device no longer being observed by Microsoft AD after it has been uninstalled)

Query Builder

Additionally, the page has a query builder that can be used to run complex searches that may not be accomplishable using filtering tools alone. Click here to learn more.

Source Inventory query builder


Asset Details

Each Row on the Source Inventory page represents a unique asset. Select the caret () to reveal additional information about an asset.

Source asset details

On User and Device Inventory pages you can also hover over and select an asset to view it in the Live Inventory page.


Raw Asset Data

Additionally, you can also view any raw asset data on this page. Once a row has been expanded, select the Raw button to access this information

Selecting the RAW button to view RAW data for an asset


Software Inventory

⚠️

Note: Software integrations must be configured in the same Source Configuration as your Device integrations for software data to appear on this page.

The Software Inventory page shares many of the same features as the Device and User Source Inventory pages. It provides up-to-date information about software that has been installed on Devices in your Organization.

Once an Integration has been configured to collect Software assets, the Sevco platform will aggregate a list of Devices associated with any software that has been identified.

Image of the Software Inventory page

Viewing Device Details

To view a list of Devices with a specific software installed, select the See devices link that corresponds with it.

A popup will appear with a list of all Devices that have the software installed.

Selecting the "see devices" link
Hover over then select a Device to view additional details about it on the Live Inventory and Device Details pages.

Select device link to view info on Live Inventory and Device Details pages


Vulnerability Inventory

⚠️

Note: Vulnerability Integrations must be configured in the same Source Configuration as your Device Integrations for vulnerability data to appear on this page.

The Vulnerability Inventory page shares many of the same features as the Device and User Source Inventory pages. It provides up-to-date information about vulnerabilities that have been identified on Devices in your Organization.

Once an Integration has been configured to collect Vulnerabilities, the Sevco platform will aggregate a list of Devices associated with any vulnerability that has been identified.

Image of Vulnerability Inventory page

Vulnerability Details

Each Row on the Vulnerability Inventory provides an overview about a specific vulnerability and contains information about its name, severity, the category it falls under, and the number of devices impacted by it.

Select a vulnerability's corresponding caret () to reveal additional information about it. This includes an in-depth description of the vulnerability, a solution for remediation or mitigation, associated CVEs , and the CVSS scores used to determine the severity of the vulnerability.

Open Vulneranbility Details

Viewing Impacted Devices

In addition to the device-count information displayed in the Devices column, users may also view the specific devices impacted by a vulnerability. To view a list of devices with a particular vulnerability, select the See devices link that corresponds with it.

A popup will appear the list of devices.

Hover over then select a Device to view additional details about it on the Live Inventory and Device Details pages.