- 18 Mar 2025
- 2 Minutes to read
- Print
- DarkLight
Qualys Policy Compliance
- Updated on 18 Mar 2025
- 2 Minutes to read
- Print
- DarkLight
The Qualys Policy Compliance module provides a view of IT compliance, continuously monitoring configurations and policies against industry standards. It offers insights to identify and remediate gaps efficiently. For more information, refer to the Qualys API documentation.
Integration Method: API
Tables: Compliance Finding (2003)
This integration supports the following events.
Event | Description |
---|---|
Compliance Posture | The event return compliance posture related data |
This integration supports the following versions.
Qualys Policy Compliance Version | 10.32.1.0-1 |
Qualys Policy Compliance API version | V2 |
Prerequisites
The user should have access to the Qualys compliance posture dashboard.
The user should have access to Qualys user with manager access to the API.
The user should have access to the DataBee console.
Configuration Overview
1. Generate client credentials on the Qualys platform with the required scopes.
2. Add the Qualys data feed integration in the DataBee console with the required Client credentials.
DataBee Parameter | Qualys Policy compliance Parameter |
---|---|
Username | Username |
Password | Password |
Qualys Policy Compliance Configuration
Sign in to the Qualys Dashboard.
Navigate to the Users tab.
Create a new user using the Users > New > User dropdown on the “Users” page.
Fill in the necessary data in the General Information tab. Then click on User Role.
In the User Role tab, fill in the role details and make sure we have allowed access to both API and GUI.
User Role: Manager
Allow access to: GUI, API
Note:
Permissions mentioned here are the minimum requirement for the data feed.
Keep the Locale, Options, and Security settings as they are and click Save. The new user will be created with a Pending Activation status. Also, an activation link will be shared on the email which you have added in the General Information.
You will receive an email. Store the Platform URL securely as it’ll be needed to configure data feed later. Then click on Activate Your Account.
Enter the OTP Code recevied in email and click on Submit.
You will get the information below, copy the Password, and click on the URL. You can login with the given username and password.
When you login with a new username and password for the first time, you will be redirected to the verification page. Verify your information and click Save.
It will redirect to the “Change Password” window. You can set a new password and login. You will be in active status, and will be able to use the API using this username and password.
DataBee Configuration
Login to the DataBee UI, navigate to Data > Data Feeds and click the Add New Data Feed button.
Search for the Qualys Policy Compliance and click it as shown below.
Click on the API Ingest option for collection method.
Enter feed contact information and click Next.
In the configuration page, confirm the following:
API Base URL: replace API Base URL with the URL copied before from email.
Authorization Method: Basic
Username: paste the Username generated earlier in email.
Password: paste the Password of the account that was set up earlier.
Event Types: preselected for all the event types that integration pulls.
Click Submit.
Troubleshooting Tips
Ensure that username and password are correct.
Ensure that the user has a manager role.
If you are unable to login with the temporary password, make sure you have given UI Permission to the user.