Qualys VMDR
Collect Qualys asset inventory and detected vulnerabilities
The Qualys VMDR (Vulnerability Management, Detection & Response) connector allows you to retrieve asset inventory and vulnerability data from your Qualys platform.
Overview
The Qualys VMDR connector enables you to collect the following information:
- Asset inventory
- Detected vulnerabilities (CVE)
- Risk score
Prerequisites
- Active Qualys VMDR account
- API authentication credentials
- API access enabled on your account
Information to provide in OverSOC
| Field | Description |
|---|---|
| Username* | Qualys username |
| Password* | Qualys password |
| Platform URL | Qualys platform URL (optional, auto-detected by default) |
Configuration
Enable API access for your user
- Log in to your Qualys VMDR account as an administrator.
- Navigate to Administration > Users.
- Select or create a user account for API access.
- Assign the user a role that includes the "API Access" permission (or
VMDR.API.ACCESS). - Save the user configuration.
Retrieve your platform URL
Your Qualys API URL varies by platform. To find your URL:
- Log in to your Qualys platform.
- Click Help > About.
- Locate your platform URL (examples:
qualysapi.qualys.comfor US,qualysapi.eu.qualys.comfor EU).
Obtain JWT token for API authentication
Qualys uses JWT tokens for API authentication:
- The connector will POST your username and password to the
/authendpoint. - Qualys responds with a JWT token (valid for 4 hours).
- This token is used to authenticate subsequent API requests.
Configure the connector in OverSOC
- In OverSOC, go to Data Sources Settings > Sources.
- Select Qualys VMDR and click Configure.
- Fill in the fields:
- Username: your Qualys username
- Password: your Qualys password
- Platform URL: your platform URL (optional, auto-detected if not provided)
- Click Save Configuration.
For detailed authentication information, see Qualys VMDR API Getting Started Guide.
Required Permissions
The user must have the following minimum permissions:
- Vulnerability Management: Read
- Asset Management: Read
- Reports: Read
- VMDR API access enabled