Host coverage is calculated based on the last 70 minutes and uses all hosts in your environment that run a supported technology.
See below the calculation mechanism for third-party and code-level vulnerabilities.
Collect: Dynatrace first collects all monitored hosts.
Filter: All monitored hosts collected are then filtered based on your monitoring rules. If there are hosts that are excluded by monitoring rules, host coverage decreases.
If there's a decrease in coverage, it can take up to 70 minutes until changes are displayed.
If there's an increase in coverage, it can take up to 10 minutes until changes are displayed.
Dynatrace collects hosts based on the processes that are configured to report code-level vulnerabilities.
If at least one process is able to report code-level vulnerabilities, then its host is covered.
A process is able to report code-level vulnerabilities when
In your monitoring rules, look for process groups that are excluded from monitoring, and adapt these rules. Note that a host is monitored when one of its processes is monitored with Application Security.
Restart the process.
It can take up to 10 minutes until any change is displayed.
Frequently asked questions
Why isn't the host coverage increasing?
If you have followed the steps above to increase the Application Security host coverage, yet the number of covered hosts stays the same, follow the instructions below.
(…) software component reporting OneAgent features are enabled for all technologies (go to Settings > Preferences > OneAgent features and search for (…) software component reporting).
There are no OneAgent features configured at the process-group level overriding the global OneAgent configuration. For details, see OneAgent features.
You restart processes after each change in configuration.
There are no OneAgent features configured at the process-group level overriding the global OneAgent configuration. For details, see OneAgent features.
Why doesn't the number of covered hosts match?
If you define tags for hosts covered by Application Security and you notice that the number of hosts on Hosts or Hosts Classic (latest Dynatrace) filtered by your Application Security tags is different from the number of hosts displayed in Security Overview under Host coverage, follow the instructions below.
Enable (…) software component reporting OneAgent features for all technologies (go to Settings > Preferences > OneAgent features, and search for (…) software component reporting).
Make sure that there are no OneAgent features configured at the process-group level overriding the global OneAgent configuration. For details, see OneAgent features.
Enable all supported technologies (go to Settings > Application Security > Vulnerability Analytics > General settings and select Third-party Vulnerability Analytics). For details, see Control by technology.
Make sure that there are no OneAgent features configured at the process-group level overriding the global OneAgent configuration. For details, see OneAgent features.