Infoblox Attribute Reference
This reference lists the attributes that Device Security collects from Infoblox,
their names as stored in Device Security, and the Device Security fields they map to.
When
Device Security integrates with Infoblox IPAM, it imports IP
address management data to enrich the device inventory with network topology
information. The attributes in this reference cover fixed address records, IPv4
addresses, networks, and network containers.
The third-party attribute name in Device Security refers to the attribute name
as it appears in the Assets Inventory table and in Query Engine. This follows the format
of third-party-name.attribute-name.
When viewing the attribute name in the Assets Inventory table column selector or on a
Device Details page, where the third-party name can be found as a header for the
attributes section, then the third-party name is removed from the attribute name.
For example, micrsoft_defender_xdr.macAddress would appear in the
Query Builder and in the Assets Inventory table, but under , the attribute would appear as macAddress.
Infoblox Device Fixedaddress Attributes
Device Security collects infoblox device fixedaddress attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute | Device Security Attribute Name | Device Security Common Attribute* | Description |
comment | ipam_infoblox.comment | Description | Comment |
dhcp_lease_time | ipam_infoblox.dhcp_lease_time | dhcp_lease_expiry_time | Dhcp lease time |
name | ipam_infoblox.name | hostname | Name of the device |
mac | ipam_infoblox.mac | id; MAC | Mac |
ipv4addr | ipam_infoblox.ipv4addr | IP Address | Ipv4addr |
match_client | ipam_infoblox.is_ip_address_static | is_ip_address_static | Match client |
match_client | ipam_infoblox.match_client | is_ip_address_static | Match client |
network | ipam_infoblox.network | — | Network the device is connected to |
Infoblox Device Ipv4address Attributes
Device Security collects infoblox device ipv4address attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute | Device Security Attribute Name | Device Security Common Attribute* | Description |
names | ipam_infoblox.names | hostname | Names |
ip_address | — | IP Address | IP address |
discovered_data.mac_address | — | MAC; id | Mac address |
discovered_data.os | ipam_infoblox.discovered_data.os | raw_os | Os |
comment | ipam_infoblox.comment | — | Comment |
discover_now_status | ipam_infoblox.discover_now_status | — | Discover now status |
discovered_data.cmp_type | ipam_infoblox.discovered_data.cmp_type | — | Cmp type |
discovered_data.discovered_name | ipam_infoblox.discovered_data.discovered_name | — | Discovered name |
discovered_data.discoverer | ipam_infoblox.discovered_data.discoverer | — | Discoverer |
discovered_data.first_discovered | ipam_infoblox.discovered_data.first_discovered | — | First discovered |
discovered_data.last_discovered | ipam_infoblox.discovered_data.last_discovered | — | Last discovered |
mac_address | ipam_infoblox.discovered_data.mac_address | — | Mac address |
discovered_data.network_component_name | ipam_infoblox.discovered_data.network_component_name | — | Network component name |
discovered_data.network_component_type | ipam_infoblox.discovered_data.network_component_type | — | Network component type |
discovered_data.v_adapter | ipam_infoblox.discovered_data.v_adapter | — | V adapter |
discovered_data.v_datacenter | ipam_infoblox.discovered_data.v_datacenter | — | V datacenter |
discovered_data.v_entity_name | ipam_infoblox.discovered_data.v_entity_name | — | V entity name |
discovered_data.v_entity_type | ipam_infoblox.discovered_data.v_entity_type | — | V entity type |
discovered_data.v_host | ipam_infoblox.discovered_data.v_host | — | V host |
discovered_data.v_switch | ipam_infoblox.discovered_data.v_switch | — | V switch |
discovered_data.vmhost_mac_address | ipam_infoblox.discovered_data.vmhost_mac_address | — | Vmhost mac address |
discovered_data.vmhost_name | ipam_infoblox.discovered_data.vmhost_name | — | Vmhost name |
discovered_data.vmhost_nic_names | ipam_infoblox.discovered_data.vmhost_nic_names | — | Vmhost nic names |
discovered_data.vmi_id | ipam_infoblox.discovered_data.vmi_id | — | Vmi ID |
discovered_data.vmi_ip_type | ipam_infoblox.discovered_data.vmi_ip_type | — | Vmi ip type |
discovered_data.vmi_is_public_address | ipam_infoblox.discovered_data.vmi_is_public_address | — | Vmi is public address |
discovered_data.vmi_name | ipam_infoblox.discovered_data.vmi_name | — | Vmi name |
discovered_data.vmi_tenant_id | ipam_infoblox.discovered_data.vmi_tenant_id | — | Vmi tenant ID |
discovered_data.vport_mac_address | ipam_infoblox.discovered_data.vport_mac_address | — | Vport mac address |
discovered_data.vswitch_id | ipam_infoblox.discovered_data.vswitch_id | — | Vswitch ID |
discovered_data.vswitch_name | ipam_infoblox.discovered_data.vswitch_name | — | Vswitch name |
discovered_data.vswitch_type | ipam_infoblox.discovered_data.vswitch_type | — | Vswitch type |
is_conflict | ipam_infoblox.is_conflict | — | Is conflict |
lease_state | ipam_infoblox.lease_state | — | Lease state |
mac_address | ipam_infoblox.mac_address | — | Mac address |
status | ipam_infoblox.status | — | Status of the device |
Infoblox Ipam Dhcp Lease Event Attributes
Device Security collects infoblox ipam dhcp lease event attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute | Device Security Attribute Name | Device Security Common Attribute* | Description |
ends | ipam_infoblox.ends | dhcp_lease_expiry_time | Ends |
client_hostname | ipam_infoblox.client_hostname | hostname | Client hostname |
address | ipam_infoblox.address | IP Address | Address |
binding_state | ipam_infoblox.binding_state | — | Binding state |
event_type | ipam_infoblox.event_type | — | Event type |
fingerprint | ipam_infoblox.fingerprint | — | Fingerprint |
member_ip | ipam_infoblox.member_ip | — | Member ip |
member_name | ipam_infoblox.member_name | — | Member name |
network | ipam_infoblox.network | — | Network the device is connected to |
protocol | ipam_infoblox.protocol | — | Protocol |
range_end_addr | ipam_infoblox.range_end_addr | — | Range end addr |
range_start_addr | ipam_infoblox.range_start_addr | — | Range start addr |
starts | ipam_infoblox.starts | — | Starts |
timestamp | ipam_infoblox.timestamp | — | Timestamp |
type | ipam_infoblox.type | — | Type |
Infoblox Network Container Attributes
Device Security collects infoblox network container attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute | Device Security Attribute Name | Device Security Common Attribute* | Description |
comment | — | Description | Comment |
network | ipam_infoblox.network | id; prefix | Network the device is connected to |
extattrs.Site.value | ipam_infoblox.extattrs.Site | Site | Value |
extattrs.VLAN.value | ipam_infoblox.extattrs.VLAN | VLAN ID | Value |
network_container | ipam_infoblox.network_container | — | Network container |
Infoblox Network Attributes
Device Security collects infoblox network attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute | Device Security Attribute Name | Device Security Common Attribute* | Description |
comment | ipam_infoblox.description | Description | Comment |
network_container | ipam_infoblox.network_container | parent | Network container |
extattrs.Site.value | ipam_infoblox.extattrs.Site | Site | Value |
network | ipam_infoblox.network | Type; prefix; id | Network the device is connected to |
extattrs.VLAN.value | ipam_infoblox.extattrs.VLAN | VLAN ID | Value |
Infoblox Ipam Ipv4 Network Event Attributes
Device Security collects infoblox ipam ipv4 network event attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute | Device Security Attribute Name | Device Security Common Attribute* | Description |
description | — | Description | Description |
network_container | — | parent | Network container |
network | — | prefix; id | Network the device is connected to |
extattrs.Site.value | — | Site | Value |
asset_type | — | Type | Asset type |
extattrs.VLAN.value | — | VLAN ID | Value |
event_type | ipam_infoblox.event_type | — | Event type |
operation | ipam_infoblox.operation | — | Operation |
timestamp | ipam_infoblox.timestamp | — | Timestamp |
type | ipam_infoblox.type | — | Type |
* Only some attributes map to a Device Security Common Attribute.