Automating queries

View as Markdown

Community Platform

With runZero’s query language, you can search and filter your asset inventory by asset fields and values. runZero includes a query library of prebuilt searches, which you can browse from the Queries page and run after a scan to investigate discovery findings.

You can also use the same search syntax to track and monitor events across your network, based on any combination of fields. Save your custom queries to reuse them. Review the query syntax documentation for a refresher on how to build a query, or adapt one of the query examples.

To run a query after every scan, turn on its Auto option. After the query runs, its results appear in the Queries table.

In the Queries table, a checkmark in the Auto column means the query is active. The Matches column next to it shows the number of results; click that number to view them. A query with no matches shows 0.

Turn on automatic search queries

  1. Select Queries from the left navigator.
  2. Open or create the query you want to turn on.
  3. Turn on the Automatically track query results on the dashboard option.
  4. Save the query.
Updated