Host Asset Details

On the Assets page, click a host asset to open a details pane. Then, click to expand the pane.

The header of the Asset Details pane displays the asset name, Asset ID, and data source icons. Below these, cards show one or more of the following metrics. You may not see all cards for every asset.

Card Description
AES

(Requires Tenable One / Tenable Lumin license) The Tenable-defined Asset Exposure Score as an integer from 0 to 1000.

ACR

(Requires Tenable One / Tenable Lumin license) The Tenable-defined Asset Criticality Rating (ACR) is an integer from 1 to 10.

Categorization Asset classification data, including Categorization Confidence (a score from 0–100), Asset Category (for example, Personal Computing Device), and Asset Function (for example, Virtual Machine).
Vulnerabilities The number of vulnerabilities identified on the asset.

The lower part of the Asset Details pane is divided into tabs.

Details

The Details tab contains the following sections with information about the asset.

Section Description
Asset

Information about the asset, including:

  • Licensed — Indicates if the asset counts toward your Tenable license count.
  • System Type — The device type, as reported by Plugin 54615.
  • Operating Systems — The operating system installed on the asset.
  • Network — The name of the network object associated with the asset. To learn more, see Networks.
  • Agent Name — The name of the Tenable Agent associated with the asset.
  • Public — Specifies if the asset is on a public network.
  • BIOS ID — The asset's unique BIOS ID.
  • IPv4 Addresses — The IPv4 addresses for the asset.
  • IPv6 Address — The IPv6 address for the asset.
  • DNS (FQDN) — The fully qualified domain name for the asset.
  • MAC Addresses — The MAC addresses for the asset.
  • Tenable ID — A UUID created for new assets during credentialed or agent scans.
  • ACR Key Drivers — Main drivers of the Asset Criticality Rating, as described in Tenable Lumin Metrics.
  • Device Class — The main class of the asset, for example Compute and Application Server.
  • Device Subclass — The subclass of the asset, for example Web Application Server.
  • Sources — The data sources that identified the asset, for example NNM.
Remote Authenticated Scan Information

Information about authentication attempts, including:

  • Last Authentication Attempt Time — The last time Tenable Nessus attempted to sign in.
  • Last Authenticated Status — Whether the last authentication attempt succeeded.
  • Last Authenticated Successful — The last time Tenable Nessus authenticated successfully.
Last Seen

Scan history for the asset, including:

  • Scan Name — The name of the last scan that detected the asset.
  • Last Scan ID — The identifier of the last scan that detected the asset.
  • Last Seen — The date and time of the most recent scan that identified the asset.
  • Last Licensed Scan — The date and time of the last scan in which the asset was considered "licensed" and counted towards Tenable's license limit. A licensed scan uses non-discovery plugins and can identify vulnerabilities. Unauthenticated scans that run non-discovery plugins update the Last Licensed Scan field, but not the Last Authenticated Scan field. For more information on how licenses work, see Tenable Vulnerability Management Licenses.
  • First Seen — The date and time when a scan first identified the asset.
  • Last Scan Target — The IP address or FQDN targeted in the last scan.
Tags Tags assigned to the asset. Click to add a tag or click on a tag to remove it.
CPE Common Platform Enumeration (CPE) strings for the asset, identifying its software, hardware, or firmware using a standardized naming convention.

Findings

The Findings tab displays all findings associated with the asset. The layout matches the Findings page. Fixed, Accepted, and Info findings are hidden by default. Use the dropdown to switch between Vulnerability and Host Audit findings.

Open Ports

The Open Ports tab displays open ports on the asset in the following columns.

Column Description
Port The open port on the asset.
Protocol The protocol used to transport information to the port, for example TCP or UDP.
Service The service running on the port, for example HTTPS or SSH.
First Detected Open The date and time the port was first detected as open.
Port Last Detected Open The date and time the port was last detected as open.
First Seen The date when a scan first detected the port.

Activity

The Activity tab displays an event log for the asset. Click > on a row to view details.

Column Description
Event The title of the event, for example Asset Discovered.
Date The date of the event.
Source The event source, for example Seen by Nessus network-based assessment.

Mitigations

The Mitigations tab displays mitigation software identified on the asset in the following columns.

Column Description
Product Name The name of the mitigation software.
Vendor Name The vendor of the mitigation software.
Version The version of the mitigation software.
Last Detected The date and time the mitigation software was last detected.

Installed Software

The Installed Software tab displays software detected on the asset. Use the search bar to filter by CPE or path. The tab contains the following columns.

Column Description
CPE The Common Platform Enumeration (CPE) string identifying the software.
Path The installation path of the software, for example C:\Program Files\7-Zip\.
Port Bindings Ports bound to the software, for example TCP: 445.
Package URL The package URL for the software, if available.
Child Packages Dependent packages associated with the software, if available.
Detected The date the software was last detected on the asset.

Ticket Logs

The Ticket Logs tab displays tickets associated with findings on this asset in the following columns.

Column Description
Finding ID The unique identifier of the finding associated with the ticket.
Date Created The date the ticket was created.
Integration The ticketing integration used, for example ServiceNow.
Owner The owner of the ticket.
Key The ticket identifier in the external system, for example INC0148350.
Content A summary of the ticket content.
Status The current status of the ticket, for example In Progress.
Create Method How the ticket was created, for example Automatic.
Last Updated The date the ticket was last updated.