Nozomi CMC Attribute Reference
Focus
Focus
Device Security

Nozomi CMC Attribute Reference

Table of Contents

Nozomi CMC Attribute Reference

This reference lists the attributes that Device Security collects from Nozomi CMC, their names as stored in Device Security, and the Device Security fields they map to.
When Device Security integrates with Nozomi CMC, it imports OT and network visibility data to enrich the device inventory. The attributes in this reference cover device identification, network details, and vulnerability findings collected from the Nozomi CMC platform.
The third-party attribute name in Device Security refers to the attribute name as it appears in the Assets Inventory table and in Query Engine. This follows the format of third-party-name.attribute-name. When viewing the attribute name in the Assets Inventory table column selector or on a Device Details page, where the third-party name can be found as a header for the attributes section, then the third-party name is removed from the attribute name.
For example, micrsoft_defender_xdr.macAddress would appear in the Query Builder and in the Assets Inventory table, but under Device DetailsAttributesIntegration Specific AttributesMicrosoft Defender, the attribute would appear as macAddress.

Device Attributes

Device Security collects device attributes from Nozomi CMC. The following table lists each Nozomi CMC attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Nozomi CMC Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
name
nozomi_cmc.name
hostname
Name of the device
mac_address
nozomi_cmc.mac_address
id; MAC Address
MAC address
ip
nozomi_cmc.ip
IP Address
IP
last_activity_time
nozomi_cmc.last_activity_time
Last Activity
Last activity time
firmware_version
nozomi_cmc.firmware_version
latest_firmware_version
Firmware version running on the device
os
nozomi_cmc.os
raw_os
OS
serial_number
nozomi_cmc.serial_number
Serial Number
Serial number
vendor
nozomi_cmc.vendor
Vendor
Device vendor
zones
nozomi_cmc.zones
Zone
Zones
_asset_kb_id
nozomi_cmc._asset_kb_id
—
Asset kb ID
appliance_hosts
nozomi_cmc.appliance_hosts
—
Appliance hosts
appliance_ids
nozomi_cmc.appliance_ids
—
Appliance ids
appliance_sites
nozomi_cmc.appliance_sites
—
Appliance sites
arc_version
nozomi_cmc.arc_version
—
Arc version
capture_device
nozomi_cmc.capture_device
—
Capture device
created_at
nozomi_cmc.created_at
—
Created at
deleted_at
nozomi_cmc.deleted_at
—
Deleted at
device_id
nozomi_cmc.device_id
—
Device ID
end_of_sale_date
nozomi_cmc.end_of_sale_date
—
End of sale date
end_of_support_date
nozomi_cmc.end_of_support_date
—
End of support date
id
nozomi_cmc.id
—
Unique identifier
is_ai_enriched
nozomi_cmc.is_ai_enriched
—
Is ai enriched
is_arc_enriched
nozomi_cmc.is_arc_enriched
—
Is arc enriched
is_sp_enriched
nozomi_cmc.is_sp_enriched
—
Is sp enriched
is_ti_enriched
nozomi_cmc.is_ti_enriched
—
Is ti enriched
level
nozomi_cmc.level
—
Level
lifecycle
nozomi_cmc.lifecycle
—
Lifecycle
os_or_firmware
nozomi_cmc.os_or_firmware
—
OS or firmware
product_name
nozomi_cmc.product_name
—
Product name
protocols
nozomi_cmc.protocols
—
Protocols
roles
nozomi_cmc.roles
—
Roles
type
nozomi_cmc.type
—
Type
vlan_id
nozomi_cmc.vlan_id
—
Vlan ID

Vulnerability Attributes

Device Security collects vulnerability attributes from Nozomi CMC. The following table lists each Nozomi CMC attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
Nozomi CMC Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
cve
nozomi_cmc.cve
cve
CVE
score
nozomi_cmc.score
cvss_base_score
Score
time
—
detected_time
Time
mac_address
—
id
MAC address
resolved
—
state
Resolved
creation_time
nozomi_cmc.creation_time
—
Creation time
cwe_id
nozomi_cmc.cwe_id
—
Cwe ID
cwe_name
nozomi_cmc.cwe_name
—
Cwe name
epss_score
nozomi_cmc.epss_score
—
Epss score
id
nozomi_cmc.id
—
Unique identifier
is_kev
nozomi_cmc.is_kev
—
Is kev
latest_hotfix
nozomi_cmc.latest_hotfix
—
Latest hotfix
minimum_hotfix
nozomi_cmc.minimum_hotfix
—
Minimum hotfix
name
nozomi_cmc.name
—
Name of the device
source
nozomi_cmc.source
—
Source
summary
nozomi_cmc.summary
—
Summary
* Only some attributes map to a Device Security Common Attribute.