Qualy Cloud Platform 10.8 (VM/PC) API notification 1

Jeff Leggett

A new release of Qualys Cloud Platform 10.8 (VM/PC) includes an updated API which is targeted for release in February 2021. The specific day will differ depending on the platform. See platform release dates on the Qualys Status page. This API notification provides an early preview into the coming API, allowing you to identify use cases that can leverage this updated API.

What’s New
New SAP HANA Authentication API

/api/2.0/fo/auth/
SAP HANA authentication is now supported for compliance scans (using PC or SCA). The new SAP HANA API (api/2.0/fo/auth/sap_hana/) lets you list, create, update and delete SAP HANA authentication records. User permissions for this API are the same as other authentication record APIs.

IBM WebSphere Authentication – Unix Directory Mode Input
/api/2.0/fo/auth/ibm_websphere/
When creating and updating IBM WebSphere App Server authentication records, you can now specify the Unix directory mode (installation directory or server directory) using the new input parameter unix_dir_mode. This allows you to create custom authentication records for instances at the installation directory level or the server directory level, similar to system-created authentication records for IBM WebSphere App Server. When listing IBM WebSphere App Server authentication records, you’ll see the Unix directory mode setting in the XML output for each record.

VM Host List Detection API and Host List API – Change to DNS Data in Output
/api/2.0/fo/asset/host/vm/detection/?action=list
/api/2.0/fo/asset/host/?action=list

For the VM Host List Detection API and the Host List API, we changed the way DNS data is presented in the XML output. Previously, we had a single tag for where we showed either the DNS hostname (e.g. xpsp2-64-24-84) or the DNS hostname with the FQDN (e.g. xpsp2-64-24-84.sample.qualys.com). When scanning Windows hosts with both a scanner and an agent, the DNS value could switch between hostname only (from agent) and hostname with FQDN (from scanner).

VM Host List Detection API – New Superseded QIDs Filter
/api/2.0/fo/asset/host/vm/detection/?action=list
This release introduces a new input parameter for the VM Host List Detection API that will allow you to filter out any QID that has been superseded by another QID detected on the same host. When a QID is filtered out of the results because it has been superseded, we’ll remove the entire block for that QID. This way the results are more streamlined and will show only the QIDs you need to fix. (Please note that there are DTD changes for VM Host List Detection API for the feature VM Host List Detection API and Host List API – Change to DNS Data in Output described earlier in this document.)

Share your Comments

Comments

Your email address will not be published. Required fields are marked *