External Assets
The External Asset Report is a point-in-time snapshot of the external asset data in your organization and sites. It organizes your asset inventory into sections and summarizes the major findings, so you can hand it to teams and leaders who may not have runZero access and need an at-a-glance look at their public-facing assets.
The report gives you high-level metrics for external assets across categories such as asset types, operating systems, hardware, protocols, and products, plus a summary of top Certificate Authorities and GeoIP countries. For organizations with less than 50,000 assets, you can add asset details and screenshots from your inventory.
You can schedule the report to run at a specified start time and frequency: once, daily, weekly, monthly, or on the Nth weekday of each month. When a report runs on a recurring schedule, runZero can notify one or more email addresses after each run.
runZero generates the report in HTML. To distribute it as a PDF, use your browser’s Print to PDF feature.
Generating the External Asset Report
- Go to the Reports page.
- Open the External Asset Report configuration form.
- Enable Include asset details to add information about each asset: asset type, operating system, hardware, outlier score, first seen date, last seen date, site, addresses, names, MAC addresses, protocols, products, and services. This option only applies to organizations with less than 50,000 assets.
- Enable Include screenshots to add captured screenshots to the report. This option only applies to organizations with less than 50,000 assets.
- Enable Include unscanned subnet details to add results from external subnets that runZero has not scanned.
- Enable Include TLS certificate details to add the details runZero gathered about TLS certificates.
- Use the External IP exclusions if your internal network uses public IP address space and you do not want those assets in the report.
- Configure Start time and Report frequency to run the report at a specified time or on a recurring schedule.
- Enter one or more email addresses in the Email addresses field to receive an email notification when the report runs.
- Generate the report. When generation completes, the report opens in your browser. Save it as a PDF to share and distribute.
Email notifications
When you configure the report to run on a schedule, you can enter a comma-separated list of email addresses. Each address receives a notification when a scheduled run finishes, with a link to the report in the runZero Console. Only registered users with access to the relevant organization can open the completed report. To share a dashboard or inventory view with people who do not have a runZero account, see External reporting.