Filter Components

For general information about constructing filters, see Filters.

Filter Component Description
Access

The level of object access to include in the filter:

  • Manageable — Shows the objects your user account can modify.

    For example, set the filter to show only the credentials you can edit.

  • Usable — Shows the objects your user account can view or use.

    For example, set the filter to show only the credentials you can use in a scan.

Actions The alert actions to include in the filter: Email, Notify, Report, Scan, SysLog, or Ticket. For more information, see Alerts and Alert Actions.
Agent Scanner The agent scanners to include in the filter. For more information, see Agent Scanning.
Assignee The ticket assignees to include in the filter. For more information, see Tickets.
Authorized The LCE Client authorization status to include in the filter: yes or no.
Client IP The LCE Client IP addresses to include in the filter. For more information, see Log Correlation Engine Clients.
Completion Time

The date range for scan results to include in the filter:

  • Explicit — Choose start and end dates and times to filter for a specific date range.

  • Last x Minutes — Filter for the last 15, 20, or 30 minutes.

  • Last x Hours — Filter for the last 1, 2, 4, 6, 12, 24, 48, or 72 hours.

  • Last x Days — Filter for the last 5, 7, 15, 25, 30, 60, 90, 120, or 180 days.

  • Last 12 Months — Filter for the last year.

  • All — Show all results.

Creator The ticket creators to include in the filter. For more information, see Tickets.
Data Type The repository data type to include in the filter: Agent, IPv4, IPv6, or Mobile. For more information, see Repositories.
Date The date range to include in the system log filter (for example, Oct 2021). For more information, see System Logs.
Filter By The type of plugin data to include in the plugin filter. For more information, see Vulnerability Analysis Filter Components.
Finish Time

The date range for report results to include in the filter:

  • Explicit — Choose start and end dates and times to filter for a specific date range.
  • Last x Minutes — Filter for the last 15, 20, or 30 minutes.

  • Last x Hours — Filter for the last 1, 2, 4, 6, 12, 24, 48, or 72 hours.

  • Last x Days — Filter for the last 5, 7, 15, 25, 30, 60, 90, 120, or 180 days.

  • Last 12 Months — Filter for the last year.

  • All — Show all results.

Group The groups to include in the filter. For more information, see Groups.
Host The name of the host to include in the filter. For more information, see Host.
Initiator The username for a user who initiated a job to include in the filter. For more information, see Job Queue Events.
Keywords The keywords to include in the system logs filter (for example, login). For more information, see System Logs.
LCE Server The LCE servers to include in the filter. For more information, see Log Correlation Engines.
Module The type of logs to include in the system logs filter. For more information, see System Logs.
Name The name of the object or user to include in the filter. For example, the name of a Nessus scanner or the name of a repository.
Organization The organization to include in the filter. For more information, see Organizations.
OS The operating systems to include in the filter. For more information, see Log Correlation Engine Clients and Log Correlation Engine Client Policies.
Owner

The object owners to include in the filter. The object owner is the user who created an object or inherited objects from a deleted user.

Plugin The plugin IDs to include in the filter.
Plugin Family The plugin family to include in the plugin filter.
Repositories The repositories to include in the filter. For more information, see Repositories.
Repository The repository to include in the filter. For more information, see Repositories.
Role The user roles to include in the filter. For more information, see User Roles.
Scan Policy The scan policies to include in the filter. For more information, see Scan Policies.
Schedule The schedules to include in the filter. For more information, see Active Scan Settings, Agent Scan Settings, Agent Synchronization Job Settings, and Report Options.
Severity The severity to include in the filter. For more information, see CVSS vs. VPR.
State The LCE Client state to include in the filter: Alive or Dead. For more information, see Log Correlation Engine Clients.
Status

The statuses to include in the filter.

Tags The tags to include in the filter. For more information, see Tags.
Timeframe The date range to include in the notification filter: Last 24 Hours, Last 7 Days, or Last 30 Days.
Type The object type (for example, Active or Agent scan results).
Username The username to include in the filter. For more information, see User Account Options.
Version The LCE version to include in the filter. For more information, see Log Correlation Engines.