Infoblox Attribute Reference
Focus
Focus
Device Security

Infoblox Attribute Reference

Table of Contents

Infoblox Attribute Reference

This reference lists the attributes that Device Security collects from Infoblox, their names as stored in Device Security, and the Device Security fields they map to.
When Device Security integrates with Infoblox IPAM, it imports IP address management data to enrich the device inventory with network topology information. The attributes in this reference cover fixed address records, IPv4 addresses, networks, and network containers.
The third-party attribute name in Device Security refers to the attribute name as it appears in the Assets Inventory table and in Query Engine. This follows the format of third-party-name.attribute-name. When viewing the attribute name in the Assets Inventory table column selector or on a Device Details page, where the third-party name can be found as a header for the attributes section, then the third-party name is removed from the attribute name.
For example, micrsoft_defender_xdr.macAddress would appear in the Query Builder and in the Assets Inventory table, but under Device DetailsAttributesIntegration Specific AttributesMicrosoft Defender, the attribute would appear as macAddress.

Fixed Address Attributes

Device Security collects fixed address attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
comment
ipam_infoblox.comment
Description
Comment
dhcp_lease_time
ipam_infoblox.dhcp_lease_time
dhcp_lease_expiry_time
Dhcp lease time
name
ipam_infoblox.name
hostname
Name of the device
mac
ipam_infoblox.mac_address
id; MAC Address
MAC address
ipv4addr
ipam_infoblox.ipv4addr
IP Address
Ipv4addr
match_client
ipam_infoblox.is_ip_address_static
is_ip_address_static
Match client
match_client
ipam_infoblox.match_client
is_ip_address_static
Match client
network
ipam_infoblox.network
—
Network the device is connected to

IPv4 Address Attributes

Device Security collects ipv4 address attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
names
ipam_infoblox.name
hostname
Names
ip_address
—
IP Address
IP address
discovered_data.mac_address
—
MAC Address; id
MAC address
discovered_data.os
ipam_infoblox.discovered_data.os
raw_os
OS
comment
ipam_infoblox.comment
—
Comment
discover_now_status
ipam_infoblox.discover_now_status
—
Discover now status
discovered_data.cmp_type
ipam_infoblox.discovered_data.cmp_type
—
Cmp type
discovered_data.discovered_name
ipam_infoblox.discovered_data.discovered_name
—
Discovered name
discovered_data.discoverer
ipam_infoblox.discovered_data.discoverer
—
Discoverer
discovered_data.first_discovered
ipam_infoblox.discovered_data.first_discovered
—
First discovered
discovered_data.last_discovered
ipam_infoblox.discovered_data.last_discovered
—
Last discovered
discovered_data.network_component_name
ipam_infoblox.discovered_data.network_component_name
—
Network component name
discovered_data.network_component_type
ipam_infoblox.discovered_data.network_component_type
—
Network component type
discovered_data.v_adapter
ipam_infoblox.discovered_data.v_adapter
—
V adapter
discovered_data.v_datacenter
ipam_infoblox.discovered_data.v_datacenter
—
V datacenter
discovered_data.v_entity_name
ipam_infoblox.discovered_data.v_entity_name
—
V entity name
discovered_data.v_entity_type
ipam_infoblox.discovered_data.v_entity_type
—
V entity type
discovered_data.v_host
ipam_infoblox.discovered_data.v_host
—
V host
discovered_data.v_switch
ipam_infoblox.discovered_data.v_switch
—
V switch
discovered_data.vmhost_mac_address
ipam_infoblox.discovered_data.vmhost_mac_address
—
Vmhost MAC address
discovered_data.vmhost_name
ipam_infoblox.discovered_data.vmhost_name
—
Vmhost name
discovered_data.vmhost_nic_names
ipam_infoblox.discovered_data.vmhost_nic_names
—
Vmhost nic names
discovered_data.vmi_id
ipam_infoblox.discovered_data.vmi_id
—
Vmi ID
discovered_data.vmi_ip_type
ipam_infoblox.discovered_data.vmi_ip_type
—
Vmi IP type
discovered_data.vmi_is_public_address
ipam_infoblox.discovered_data.vmi_is_public_address
—
Vmi is public address
discovered_data.vmi_name
ipam_infoblox.discovered_data.vmi_name
—
Vmi name
discovered_data.vmi_tenant_id
ipam_infoblox.discovered_data.vmi_tenant_id
—
Vmi tenant ID
discovered_data.vport_mac_address
ipam_infoblox.discovered_data.vport_mac_address
—
Vport MAC address
discovered_data.vswitch_id
ipam_infoblox.discovered_data.vswitch_id
—
Vswitch ID
discovered_data.vswitch_name
ipam_infoblox.discovered_data.vswitch_name
—
Vswitch name
discovered_data.vswitch_type
ipam_infoblox.discovered_data.vswitch_type
—
Vswitch type
is_conflict
ipam_infoblox.is_conflict
—
Is conflict
lease_state
ipam_infoblox.lease_state
—
Lease state
mac_address
ipam_infoblox.mac_address
—
MAC address
status
ipam_infoblox.status
—
Status of the device

DHCP Lease Attributes

Device Security collects dhcp lease attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
ends
ipam_infoblox.ends
dhcp_lease_expiry_time
Ends
client_hostname
ipam_infoblox.client_hostname
hostname
Client hostname
address
ipam_infoblox.address
IP Address
Address
hardware
—
MAC Address; id
Hardware
binding_state
ipam_infoblox.binding_state
—
Binding state
event_type
ipam_infoblox.event_type
—
Event type
fingerprint
ipam_infoblox.fingerprint
—
Fingerprint
member_ip
ipam_infoblox.member_ip
—
Member IP
member_name
ipam_infoblox.member_name
—
Member name
network
ipam_infoblox.network
—
Network the device is connected to
protocol
ipam_infoblox.protocol
—
Protocol
range_end_addr
ipam_infoblox.range_end_addr
—
Range end addr
range_start_addr
ipam_infoblox.range_start_addr
—
Range start addr
starts
ipam_infoblox.starts
—
Starts
timestamp
ipam_infoblox.timestamp
—
Timestamp
type
ipam_infoblox.type
—
Type

Network Container Attributes

Device Security collects network container attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
comment
—
Description
Comment
network
ipam_infoblox.network
id; prefix
Network the device is connected to
extattrs.Site.value
ipam_infoblox.extattrs.Site
Site
Value
entity
—
Type
Entity
extattrs.VLAN.value
ipam_infoblox.extattrs.VLAN
VLAN ID
Value
network_container
ipam_infoblox.network_container
—
Network container

Network Attributes

Device Security collects network attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
comment
ipam_infoblox.description
Description
Comment
network_container
ipam_infoblox.network_container
parent
Network container
extattrs.Site.value
ipam_infoblox.extattrs.Site
Site
Value
network
ipam_infoblox.network
Type; prefix; id
Network the device is connected to
extattrs.VLAN.value
ipam_infoblox.extattrs.VLAN
VLAN ID
Value

IPv4 Network Event Attributes

Device Security collects ipv4 network event attributes from Infoblox. The following table lists each Infoblox attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Infoblox Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
description
—
Description
Description
network_container
—
parent
Network container
network
—
prefix; id
Network the device is connected to
extattrs.Site.value
—
Site
Value
asset_type
—
Type
Asset type
extattrs.VLAN.value
—
VLAN ID
Value
event_type
ipam_infoblox.event_type
—
Event type
operation
ipam_infoblox.operation
—
Operation
timestamp
ipam_infoblox.timestamp
—
Timestamp
type
ipam_infoblox.type
—
Type
* Only some attributes map to a Device Security Common Attribute.