Tenable One Open Connector

The following is not supported in Tenable FedRAMP Moderate environments. For more information, see the Tenable FedRAMP Product Offering.

The Tenable One Open Connector ingests asset and finding data from third-party sources through one of the following methods:

  • Static file upload: Use this interface for manual flat file uploads.

  • Automated pull from cloud storage: Use this method for automated discovery and import of data with continuous, scheduled syncs from remote storage.

  • Automated pull from database: Use this method to run a SQL query against a supported database and ingest the result on a schedule, without exporting your records to a file.

Unlike predefined connectors, the Tenable One Open Connector gives you control over field mapping, deduplication logic, and data categorization.

Note:Tenable One Open Connector performs every initial synchronization as a Full Fetch to pull the entire dataset and establish a baseline for future incremental updates.

Connector Details

Both static file uploads and cloud storage pulls support Full Fetch and Incremental Fetch modes. You can switch between these modes to accommodate changing data requirements. Tenable Exposure Management supports only one active file per connector instance. Each database pull runs one SQL query and replaces the connector data with the result.

Attribute Specification
Primary use cases
  • Upload external data for proof-of-concept evaluations.

  • Import penetration test findings from third-party reports.

  • Ingest data from security vendors that do not yet have a native connector.

Supported Data Sources
  • Static file upload

  • Automated/Scheduled pull from a supported cloud storage

  • Automated/Scheduled pull from a supported database

Supported Cloud Storage Providers

Automated pull from cloud storage supports the following providers:

  • Amazon S3
  • Azure Blob Storage
  • Google Cloud Storage (GCS)
Supported Database Providers

Automated pull from database supports the following providers:

  • BigQuery (GCP)
  • Oracle

For more information, see Automated Pull from Database in Tenable One Open Connector.

Supported file formats
  • CSV

  • Excel (.xlsx)

  • ZIP files containing a single source file

File formats do not apply to an automated pull from a database. The connector ingests the SQL query result directly.

Maximum file size

2 GB per file.

This limit does not apply to the result of an automated pull from a database.

Supported asset types
  • Devices

  • Containers

  • Resources (Cloud)

  • Web Applications

  • Code Repository

Synchronization modes
  • Full Fetch: Replaces the existing dataset with each new file sync.
  • Incremental Fetch: Updates the established baseline based on your selected Delta Sync mode.
Ingestion and sync logic
  • Both static file uploads and automated cloud storage pulls support Full Fetch and Incremental Fetch sync modes.
  • An automated database pull runs your SQL query on every sync and replaces the connector data with the result. No file comparison applies, and no Data Update Mode selection appears.
  • You can switch between the sync modes to accommodate changing data requirements.
  • Tenable Exposure Management supports only one active file per connector instance.
Support limitations
  • Supports English-language columns only.

  • Does not support direct API-based integrations.

  • Does not support Identity Exposure.

The following steps allow you to configure this connector for use with Tenable Exposure Management from start to finish.

Add a Connector

To add a new connector:

  1. In the left navigation menu, click Connectors.

    The Connectors page appears.

  2. In the upper-right corner, click Add new connector.

    The Connector Library page appears.

  3. In the search box, type the name of the connector (i.e.,Open Connector). Alternatively, locate the connector in the Custom section.

  4. On the Tenable One Open Connector tile, click Connect.

    The connector configuration options appear.

Configure the Connector

To set up the connector:

  1. (Optional) In the Connector's Name box, type a descriptive name for the connector.

  2. In the Data pulling configuration section, select a data source option. To continue the configuration, click one of the following Authentication Methods to open the corresponding user guide:

    • Automated Pull from Cloud Storage: Select this option to establish a continuous data pipeline from your cloud storage.

      • Amazon S3: Select this provider to pull from your Amazon S3 buckets.

      • Azure Blob Storage: Select this provider to pull from the File Path you specify in your Azure Blob Storage account.

      • Google Cloud Storage: Select this provider to pull from the File Path you specify in Google Cloud Storage.

    • Automated Pull from Database: Select this option to run a SQL query against a supported database on a schedule. From the Database drop-down, select your provider:

      • BigQuery (GCP): Select this provider to run your query against a dataset in BigQuery.

      • Oracle: Select this provider to run your query against an Oracle database.

    • Static file upload: Select this option to manually upload a single CSV, Excel, or ZIP file.

Related topics: