Skip to main content

Inventory

Inventory in the navigation menu opens the resources Connect has discovered from every account. It's the raw material for Groups, Boundaries, and Decommission, and the first place to look when one of those matches something unexpected.

What gets discovered from each source is covered on its integration page, and the cloud resource types on the AWS and Azure pages.

Dashboard

The Dashboard tab summarizes the inventory that matches the current filters:

  • Resources by Type and Resources by Integration: how many items of each type, and from each integration. Click a segment to open the Resources tab filtered to it.
  • Resource Changes: items created, updated, and deleted over time.

The filter bar at the top applies to all three charts, and the filters carry across to the Resources tab.

Resources

The Resources tab is a paged table of items. Each row shows when the item was last updated, its name or ID, the integration and account it came from (hover the integration for the account), its type, project, and first two IP addresses (with a button for the rest), how many Groups it belongs to, and any Risks, posture check findings for a cloud resource, from FireMon Cloud Defense where it's in use.

The list shows only the resource types that carry IP addresses, since those are the items Groups, Boundaries, and Decommission use.

Searching

Filters narrow the list by Account, Account Label, Environment, Integration, Project, Region, Resource Type, Source, and Vendor. The search box matches text across the item's fields, as an exact phrase. To search with Lucene syntax instead, such as the * and ? wildcards or a CIDR match like ip:"10.0.0.0/8" (which finds every item with an address inside it), pick the drop-down's second option, Search for items containing …, which leaves what you typed unquoted. See Common controls.

The result count caps at 10,000. Narrow the filters if you need an exact number.

Item details

Click an item's name to open it. The top of the page shows its identity: ID, name, type, project, account, integration and source, location, IP addresses, hostname and MAC address where known, and, where the source reports them, when a firewall rule last matched it (Last Rule Hit) and when the source last saw it (Last Seen). Below that, a line says when the item was last retrieved from its integration.

The tabs underneath:

TabWhat it shows
AttributesThe item's raw attributes as the source reported them. This is where you find the paths to use in an Attributes criterion.
ChangesThe changes Connect has recorded for the item over the last 90 days, with what changed.
GroupsThe Groups the item is currently a member of.
RisksPosture check results for a cloud resource.
TagsThe item's tags as key and value pairs.

An item that has been deleted from its source keeps a page for 90 days, built from its last change record, so a Decommission candidate can still be inspected after the asset is gone.