---
title: Nexpose
---
<!-- licenses: community, platform -->

runZero integrates with ((Rapid7 Nexpose)) by importing files that were exported from your ((Nexpose)) instance.

## Getting started with Rapid7 Nexpose {#nexpose-getting-started}

To use the Rapid7 Nexpose integration, you'll need to:

1. Download an XML Export or XML Export 2.0 report from Nexpose. 
2. Import the Nexpose files through the inventory pages. 

## Requirements {#nexpose-requirements}

Before you can set up the Nexpose integration:

* Make sure you have access to the Nexpose portal. 

### Step 1: Export Nexpose vulnerability scan report

1. Sign in to Nexpose with the account being used for the runZero integration. 
2. Go to the Reports page and select _Create a report_.
3. From the Export tab, select either XML Report or XML Report 2.0.
4. Set the scan, asset, asset group, or site scope.
5. Click _Save & Run the Report_.
6. When the report completes, save the report to a local file.

### Step 2: Import the Nexpose files into runZero

1. Go to the [Inventory page](https://console.runzero.com/inventory) in runZero. 
2. Choose **Import** > **Nexpose XML Export (.xml)** from the list of import types.
3. On the import data page:
    * Choose the site you want to add your assets to.
    * Set tags to apply to the imported assets (optional).
    * Set the [severity and risk levels](docs/rapid7.md/#rapid7-scoring) to ingest (optional).
    * Set the **Fingerprint only** toggle to _Yes_ if you want vulnerability records to be ingested for fingerprint analysis but not stored in your runZero vulnerability inventory (optional).

### Step 3: View Nexpose assets and vulnerabilities

After a successful sync, you can [go to your inventory](https://console.runzero.com/inventory) to view your Nexpose assets. These assets will have a Rapid7 icon listed in the **Source** column.

The Nexpose integration gathers details about vulnerabilities detected in addition to enriching asset inventory data. Go to Inventory > [Vulnerabilities](https://console.runzero.com/inventory/vulnerabilities) to view the vulnerability data provided by Nexpose.

To filter by Rapid7 assets, consider running the following queries:

* [View all Rapid7 assets](https://console.runzero.com/inventory?search=source%3Atenable): 
     ```
     source:Rapid7
    ```

Click into each asset to see its individual attributes. runZero will show you the attributes gathered from the Nexpose scan file.

## Troubleshooting {#nexpose-troubleshooting}
If you are having trouble using this integration, the questions and answers below may assist in your troubleshooting.

### Why is the Rapid7 Nexpose integration unable to connect?
1. Are you getting any data from the Rapid7 Nexpose integration?
    * Make sure to query the inventory rather than look at the task details to review all the data available from this integration.
    * In some cases, integrations have a configuration set that limits the amount of data that comes into the runZero console.
2. Some integrations require very specific actions that are easy to overlook. If a step is missed when setting up the integration, it may not work correctly. Please review this documentation and follow the steps exactly.
3. If the Rapid7 Nexpose integration is unable to connect be sure to check the task log for errors. Some common errors include:
    * 500 - server error, unable to connect to the endpoint
    * 404 - hitting an unknown endpoint on the server
    * 403 - not authorized, likely a credential issue
4. Verify you are running the integration task from an Explorer with access to the Nexpose host.
