Try it free

Hybrid & Multicloud

  • Latest Dynatrace
  • Reference

Contains entity definitions for Azure Hybrid & Multicloud stored in Smartscape on Grail. Entities are prefixed with AZURE_.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for Azure Hybrid & Multicloud entity types.

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR*"
| append [ smartscapeNodes "AZURE_MICROSOFT_AZUREARCDATA*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_AZURESTACK*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_AZURESTACKHCI*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_EDGE_*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_EXTENDEDLOCATION*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_HYBRIDCLOUD*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_HYBRIDCOMPUTE*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_HYBRIDCONNECTIVITY*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_HYBRIDCONTAINERSERVICE*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_KUBERNETES_*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_KUBERNETESCONFIGURATION*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_RESOURCECONNECTOR*" ]
| append [ smartscapeNodes "AZURE_MICROSOFT_SCVMM*" ]

Permission fields

  • azure.subscription
  • azure.resource.group
  • dt.security_context

API gateway REST APIS

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_APIGATEWAYRESTAPIS

AWS API Gateway REST APIs accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_APIGATEWAYRESTAPIS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_APIGATEWAYRESTAPIS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

API gateway stages

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_APIGATEWAYSTAGES

AWS API Gateway Stages accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_APIGATEWAYSTAGES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_APIGATEWAYSTAGES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Access analyzer analyzers

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ACCESSANALYZERANALYZERS

AWS Access Analyzer Analyzers accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ACCESSANALYZERANALYZERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ACCESSANALYZERANALYZERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Acm certificate summaries

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ACMCERTIFICATESUMMARIES

AWS Acm Certificate Summaries accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ACMCERTIFICATESUMMARIES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ACMCERTIFICATESUMMARIES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

AppSync GraphQL APIS

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_APPSYNCGRAPHQLAPIS

AWS AppSync GraphQL APIs accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_APPSYNCGRAPHQLAPIS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_APPSYNCGRAPHQLAPIS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Appliances

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_RESOURCECONNECTOR_APPLIANCES

Appliances in Azure Arc Resource Bridge.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_RESOURCECONNECTOR_APPLIANCES"

smartscapeNodes "AZURE_MICROSOFT_RESOURCECONNECTOR_APPLIANCES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Arc-Enabled Kubernetes cluster

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_KUBERNETES_CONNECTEDCLUSTERS

External Kubernetes cluster connected to Azure via Azure Arc.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_KUBERNETES_CONNECTEDCLUSTERS"

smartscapeNodes "AZURE_MICROSOFT_KUBERNETES_CONNECTEDCLUSTERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Auto scaling auto scaling groups

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_AUTOSCALINGAUTOSCALINGGROUPS

AWS Auto Scaling Auto Scaling Groups accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_AUTOSCALINGAUTOSCALINGGROUPS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_AUTOSCALINGAUTOSCALINGGROUPS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Availability sets

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_SCVMM_AVAILABILITYSETS

Availability sets in Azure Arc SCVMM.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_SCVMM_AVAILABILITYSETS"

smartscapeNodes "AZURE_MICROSOFT_SCVMM_AVAILABILITYSETS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud connections

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_HYBRIDCLOUD_CLOUDCONNECTIONS

Connection joining a remote multicloud endpoint to an Azure Virtual Hub.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_HYBRIDCLOUD_CLOUDCONNECTIONS"

smartscapeNodes "AZURE_MICROSOFT_HYBRIDCLOUD_CLOUDCONNECTIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud connectors

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_HYBRIDCLOUD_CLOUDCONNECTORS

Cloud connectors in Azure Hybrid Cloud.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_HYBRIDCLOUD_CLOUDCONNECTORS"

smartscapeNodes "AZURE_MICROSOFT_HYBRIDCLOUD_CLOUDCONNECTORS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud formation stack sets

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFORMATIONSTACKSETS

AWS Cloud Formation Stack Sets accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFORMATIONSTACKSETS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFORMATIONSTACKSETS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud formation stacks

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFORMATIONSTACKS

AWS Cloud Formation Stacks accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFORMATIONSTACKS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFORMATIONSTACKS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud front distributions

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFRONTDISTRIBUTIONS

AWS Cloud Front Distributions accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFRONTDISTRIBUTIONS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDFRONTDISTRIBUTIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud manifest files

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AZURESTACK_CLOUDMANIFESTFILES

Cloud manifest files in Azure Stack.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AZURESTACK_CLOUDMANIFESTFILES"

smartscapeNodes "AZURE_MICROSOFT_AZURESTACK_CLOUDMANIFESTFILES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud trail trails

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CLOUDTRAILTRAILS

AWS Cloud Trail Trails accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDTRAILTRAILS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDTRAILTRAILS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Cloud watch alarms

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CLOUDWATCHALARMS

AWS Cloud Watch Alarms accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDWATCHALARMS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CLOUDWATCHALARMS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Clouds

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_SCVMM_CLOUDS

Clouds in Azure Arc SCVMM.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_SCVMM_CLOUDS"

smartscapeNodes "AZURE_MICROSOFT_SCVMM_CLOUDS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Clusters

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_CLUSTERS

Clusters in Azure Arc VMware vSphere.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_CLUSTERS"

smartscapeNodes "AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_CLUSTERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Code build projects

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CODEBUILDPROJECTS

AWS Code Build Projects accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CODEBUILDPROJECTS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CODEBUILDPROJECTS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Code build source credentials infos

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CODEBUILDSOURCECREDENTIALSINFOS

AWS Code Build Source Credentials Infos accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CODEBUILDSOURCECREDENTIALSINFOS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CODEBUILDSOURCECREDENTIALSINFOS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Config service configuration recorder statuses

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICECONFIGURATIONRECORDERSTATUSES

AWS Config Service Configuration Recorder Statuses accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICECONFIGURATIONRECORDERSTATUSES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICECONFIGURATIONRECORDERSTATUSES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Config service configuration recorders

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICECONFIGURATIONRECORDERS

AWS Config Service Configuration Recorders accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICECONFIGURATIONRECORDERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICECONFIGURATIONRECORDERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Config service delivery channels

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICEDELIVERYCHANNELS

AWS Config Service Delivery Channels accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICEDELIVERYCHANNELS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_CONFIGSERVICEDELIVERYCHANNELS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Config templates

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EDGE_CONFIGTEMPLATES

Config templates in Azure Edge.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EDGE_CONFIGTEMPLATES"

smartscapeNodes "AZURE_MICROSOFT_EDGE_CONFIGTEMPLATES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Configuration references

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EDGE_CONFIGURATIONREFERENCES

Configuration references in Azure Edge.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EDGE_CONFIGURATIONREFERENCES"

smartscapeNodes "AZURE_MICROSOFT_EDGE_CONFIGURATIONREFERENCES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Configurations

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EDGE_CONFIGURATIONS

Configurations in Azure Edge.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EDGE_CONFIGURATIONS"

smartscapeNodes "AZURE_MICROSOFT_EDGE_CONFIGURATIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Contexts

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EDGE_CONTEXTS

Contexts in Azure Edge.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EDGE_CONTEXTS"

smartscapeNodes "AZURE_MICROSOFT_EDGE_CONTEXTS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Custom locations

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EXTENDEDLOCATION_CUSTOMLOCATIONS

Custom locations in Azure Arc Custom Locations.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EXTENDEDLOCATION_CUSTOMLOCATIONS"

smartscapeNodes "AZURE_MICROSOFT_EXTENDEDLOCATION_CUSTOMLOCATIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Data controllers

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AZUREARCDATA_DATACONTROLLERS

Data controllers in Azure Arc Data Services.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AZUREARCDATA_DATACONTROLLERS"

smartscapeNodes "AZURE_MICROSOFT_AZUREARCDATA_DATACONTROLLERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Data stores

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_DATASTORES

Data stores in Azure Arc VMware vSphere.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_DATASTORES"

smartscapeNodes "AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_DATASTORES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Database migration service replication instances

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_DATABASEMIGRATIONSERVICEREPLICATIONINSTANCES

AWS Database Migration Service Replication Instances accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_DATABASEMIGRATIONSERVICEREPLICATIONINSTANCES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_DATABASEMIGRATIONSERVICEREPLICATIONINSTANCES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Dax clusters

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_DAXCLUSTERS

AWS Dax Clusters accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_DAXCLUSTERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_DAXCLUSTERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Device pools

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AZURESTACKHCI_DEVICEPOOLS

Device pools in Azure Stack HCI.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AZURESTACKHCI_DEVICEPOOLS"

smartscapeNodes "AZURE_MICROSOFT_AZURESTACKHCI_DEVICEPOOLS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Diagnostics

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EDGE_DIAGNOSTICS

Diagnostics in Azure Edge.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EDGE_DIAGNOSTICS"

smartscapeNodes "AZURE_MICROSOFT_EDGE_DIAGNOSTICS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Disconnected operations

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EDGE_DISCONNECTEDOPERATIONS

Disconnected operations in Azure Edge.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EDGE_DISCONNECTEDOPERATIONS"

smartscapeNodes "AZURE_MICROSOFT_EDGE_DISCONNECTEDOPERATIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Dynamo DB continuous backups descriptions

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_DYNAMODBCONTINUOUSBACKUPSDESCRIPTIONS

AWS Dynamo Db Continuous Backups Descriptions accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_DYNAMODBCONTINUOUSBACKUPSDESCRIPTIONS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_DYNAMODBCONTINUOUSBACKUPSDESCRIPTIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Dynamo DB tables

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_DYNAMODBTABLES

AWS Dynamo Db Tables accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_DYNAMODBTABLES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_DYNAMODBTABLES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 IPAMs

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2IPAMS

AWS EC2 IPAMs accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2IPAMS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2IPAMS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 VPC endpoints

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCENDPOINTS

AWS EC2 VPC Endpoints accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCENDPOINTS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCENDPOINTS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 VPC peering connections

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCPEERINGCONNECTIONS

AWS EC2 VPC Peering Connections accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCPEERINGCONNECTIONS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCPEERINGCONNECTIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 VPCs

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCS

AWS EC2 VPCs accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2VPCS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 account attributes

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2ACCOUNTATTRIBUTES

AWS EC2 Account Attributes accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2ACCOUNTATTRIBUTES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2ACCOUNTATTRIBUTES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 addresses

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2ADDRESSES

AWS EC2 Addresses accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2ADDRESSES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2ADDRESSES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 flow logs

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2FLOWLOGS

AWS EC2 Flow Logs accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2FLOWLOGS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2FLOWLOGS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 images

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2IMAGES

AWS EC2 Images accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2IMAGES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2IMAGES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 instance statuses

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2INSTANCESTATUSES

AWS EC2 Instance Statuses accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2INSTANCESTATUSES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2INSTANCESTATUSES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 instances

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2INSTANCES

AWS EC2 Instances accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2INSTANCES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2INSTANCES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 key pairs

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2KEYPAIRS

AWS EC2 Key Pairs accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2KEYPAIRS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2KEYPAIRS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 network ACLs

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2NETWORKACLS

AWS EC2 Network ACLs accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2NETWORKACLS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2NETWORKACLS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 network interfaces

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2NETWORKINTERFACES

AWS EC2 Network Interfaces accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2NETWORKINTERFACES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2NETWORKINTERFACES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 route tables

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2ROUTETABLES

AWS EC2 Route Tables accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2ROUTETABLES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2ROUTETABLES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 security groups

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2SECURITYGROUPS

AWS EC2 Security Groups accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2SECURITYGROUPS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2SECURITYGROUPS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 snapshots

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2SNAPSHOTS

AWS EC2 Snapshots accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2SNAPSHOTS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2SNAPSHOTS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 subnets

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2SUBNETS

AWS EC2 Subnets accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2SUBNETS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2SUBNETS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EC2 volumes

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EC2VOLUMES

AWS EC2 Volumes accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EC2VOLUMES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EC2VOLUMES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

ECS clusters

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ECSCLUSTERS

AWS ECS Clusters accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ECSCLUSTERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ECSCLUSTERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

ECS services

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ECSSERVICES

AWS ECS Services accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ECSSERVICES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ECSSERVICES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

ECS task definitions

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ECSTASKDEFINITIONS

AWS ECS Task Definitions accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ECSTASKDEFINITIONS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ECSTASKDEFINITIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EFS file systems

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EFSFILESYSTEMS

AWS EFS File Systems accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EFSFILESYSTEMS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EFSFILESYSTEMS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EFS mount targets

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EFSMOUNTTARGETS

AWS EFS Mount Targets accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EFSMOUNTTARGETS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EFSMOUNTTARGETS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EKS clusters

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EKSCLUSTERS

AWS EKS Clusters accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EKSCLUSTERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EKSCLUSTERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EKS node groups

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EKSNODEGROUPS

AWS EKS Node Groups accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EKSNODEGROUPS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EKSNODEGROUPS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

ELBv2 listeners

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2LISTENERS

AWS ELBv2 Listeners accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2LISTENERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2LISTENERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

ELBv2 load balancers

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2LOADBALANCERS

AWS ELBv2 Load Balancers accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2LOADBALANCERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2LOADBALANCERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

ELBv2 target groups

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2TARGETGROUPS

AWS ELBv2 Target Groups accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2TARGETGROUPS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2TARGETGROUPS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

ELBv2 target health descriptions

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2TARGETHEALTHDESCRIPTIONS

AWS ELBv2 Target Health Descriptions accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2TARGETHEALTHDESCRIPTIONS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICLOADBALANCINGV2TARGETHEALTHDESCRIPTIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

EMR clusters

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_EMRCLUSTERS

AWS EMR Clusters accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_EMRCLUSTERS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_EMRCLUSTERS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Ecr image details

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ECRIMAGEDETAILS

AWS Ecr Image Details accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ECRIMAGEDETAILS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ECRIMAGEDETAILS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Ecr repositories

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ECRREPOSITORIES

AWS Ecr Repositories accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ECRREPOSITORIES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ECRREPOSITORIES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Edge devices

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AZURESTACKHCI_EDGEDEVICES

Edge devices in Azure Stack HCI.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AZURESTACKHCI_EDGEDEVICES"

smartscapeNodes "AZURE_MICROSOFT_AZURESTACKHCI_EDGEDEVICES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Edge machines

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AZURESTACKHCI_EDGEMACHINES

Edge machines in Azure Stack HCI.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AZURESTACKHCI_EDGEMACHINES"

smartscapeNodes "AZURE_MICROSOFT_AZURESTACKHCI_EDGEMACHINES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Elastic beanstalk applications

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKAPPLICATIONS

AWS Elastic Beanstalk Applications accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKAPPLICATIONS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKAPPLICATIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Elastic beanstalk configuration templates

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKCONFIGURATIONTEMPLATES

AWS Elastic Beanstalk Configuration Templates accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKCONFIGURATIONTEMPLATES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKCONFIGURATIONTEMPLATES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Elastic beanstalk environments

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKENVIRONMENTS

AWS Elastic Beanstalk Environments accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKENVIRONMENTS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_ELASTICBEANSTALKENVIRONMENTS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Enabled resource types

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_EXTENDEDLOCATION_CUSTOMLOCATIONS_ENABLEDRESOURCETYPES

Enabled resource types in Azure Arc Custom Locations.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_EXTENDEDLOCATION_CUSTOMLOCATIONS_ENABLEDRESOURCETYPES"

smartscapeNodes "AZURE_MICROSOFT_EXTENDEDLOCATION_CUSTOMLOCATIONS_ENABLEDRESOURCETYPES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Endpoints

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_HYBRIDCONNECTIVITY_ENDPOINTS

Endpoints in Azure Hybrid Connectivity.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_HYBRIDCONNECTIVITY_ENDPOINTS"

smartscapeNodes "AZURE_MICROSOFT_HYBRIDCONNECTIVITY_ENDPOINTS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Extension types

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_KUBERNETESCONFIGURATION_EXTENSIONTYPES

Extension types in Azure Arc Kubernetes Configuration.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_KUBERNETESCONFIGURATION_EXTENSIONTYPES"

smartscapeNodes "AZURE_MICROSOFT_KUBERNETESCONFIGURATION_EXTENSIONTYPES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Extensions

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_KUBERNETESCONFIGURATION_EXTENSIONS

Extensions in Azure Arc Kubernetes Configuration.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_KUBERNETESCONFIGURATION_EXTENSIONS"

smartscapeNodes "AZURE_MICROSOFT_KUBERNETESCONFIGURATION_EXTENSIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Flux configurations

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_KUBERNETESCONFIGURATION_FLUXCONFIGURATIONS

Flux configurations in Azure Arc Kubernetes Configuration.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_KUBERNETESCONFIGURATION_FLUXCONFIGURATIONS"

smartscapeNodes "AZURE_MICROSOFT_KUBERNETESCONFIGURATION_FLUXCONFIGURATIONS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Gallery images

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AZURESTACKHCI_GALLERYIMAGES

Gallery images in Azure Stack HCI.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AZURESTACKHCI_GALLERYIMAGES"

smartscapeNodes "AZURE_MICROSOFT_AZURESTACKHCI_GALLERYIMAGES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Gateways

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_HYBRIDCOMPUTE_GATEWAYS

Gateways in Azure Arc-enabled Servers.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_HYBRIDCOMPUTE_GATEWAYS"

smartscapeNodes "AZURE_MICROSOFT_HYBRIDCOMPUTE_GATEWAYS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Guard duty detectors

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_GUARDDUTYDETECTORS

AWS Guard Duty Detectors accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_GUARDDUTYDETECTORS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_GUARDDUTYDETECTORS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

Hosts

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_HOSTS

Hosts in Azure Arc VMware vSphere.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_HOSTS"

smartscapeNodes "AZURE_MICROSOFT_CONNECTEDVMWAREVSPHERE_HOSTS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

IAM MFA devices

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_IAMMFADEVICES

AWS IAM MFA Devices accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_IAMMFADEVICES"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_IAMMFADEVICES"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

IAM access key last used

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_IAMACCESSKEYLASTUSEDS

AWS IAM Access Key Last Used accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_IAMACCESSKEYLASTUSEDS"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_IAMACCESSKEYLASTUSEDS"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all fields that are provided by all Azure entities.

AttributeTypeDescriptionExamples

azure.resource.kind

string

experimentalDisplay name: Azure resource kindA kind of the Azure resource

app,linux

azure.resource.sku.name

string

experimentalDisplay name: Azure resource SKU nameName of the Azure resource SKU

B_Gen5_1

azure.resource.sku.tier

string

experimentalDisplay name: Azure resource SKU tierTier of the Azure resource SKU

Basic

azure.resource.sku.capacity

string

experimentalDisplay name: Azure resource SKU capacityCapacity of the Azure resource SKU

20

azure.status

string

experimentalDisplay name: Azure statusThe status of the instance

Running; Stopped (deallocated)

azure.provisioning_state

string

experimentalDisplay name: Azure provisioning stateThe provisioning status of the resource

Succeeded; DELETED; ERROR; INCOMPLETE

azure.object

string

experimentalDisplay name: Azure objectThe full JSON content of Azure object

azure.properties.version

string

experimentalDisplay name: Azure properties versionThe json content version

...

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.tenant.id

string

resource experimentalDisplay name: Azure tenant IDUnique, immutable identifier assigned to the Azure tenant.

37c4add3-612a-483d-8b24-cccbb35d3306

Cloud entity fields

Fields that are provided by all Cloud workloads.

AttributeTypeDescriptionExamples

cloud.acquisition.status

string

experimentalDisplay name: Cloud acquisition statusThe status of Smartscape nodes data acquisition by Data Acquisition Conroller OK - node is consistent DELETED - node was deleted in the cloud platform ERROR - there was an error acquiring node, but the node was upserted INCOMPLETE - there was an error acquiring node child resource (ie. EC2 Instance, with no EBS volumes due to missing permissions) , but the node was upserted.

OK; DELETED; ERROR; INCOMPLETE

IAM access key metadata

Smartscape node name: azure.resource.name

Smartscape node type: AZURE_MICROSOFT_AWSCONNECTOR_IAMACCESSKEYMETADATA

AWS IAM Access Key Metadata accessible through the Azure AWS Connector.

Query

Fetch all Smartscape nodes from the smartscape.nodes table and filter for the entity type "AZURE_MICROSOFT_AWSCONNECTOR_IAMACCESSKEYMETADATA"

smartscapeNodes "AZURE_MICROSOFT_AWSCONNECTOR_IAMACCESSKEYMETADATA"

ID input

The ID is calculated based on the following fields in the defined order: azure.resource.id

Base entity fields

The following base fields are used for all entities.

AttributeTypeDescriptionExamples

id

smartscapeId

stableDisplay name: IDA Smartscape ID consists of two components: an UPPER_CASE entity type and a random 16-character hexadecimal unique identifier, separated by a dash. Use Smartscape conversion functions when working with strings that represent Smartscape IDs.

<type>-017198AD253CBD63

id_classic

string

deprecatedDisplay name: Classic IDThe entity ID that was used in the classic entity store. This ID is present in old monitoring data. Not all entities have this ID, and it is not generated for new entities. Use the id field instead, which is the Smartscape ID.

<type>-017198AD253CBD63

name

string

stableDisplay name: NameThe entity name.

localhost; easyTravel; product-catalog

type

string

stableDisplay name: TypeThe entity type. UPPER_SNAKE_CASE string that represents the type of the entity.

TYPE_A

tags

record

stableDisplay name: TagsA consolidated record that aggregates all tag values originating from different contexts. Each nested field within tags represents a specific key (for example, release or name). The value of each nested field is the tag value from one or multiple contexts. Tags for specific context can be queried via tags:context field. Note that rule-based tags do not exist in the new model.

tags[tag_key-1] = [context_A_tag_val-1, context_B_tag_val-1]; tags[tag_key-2] = context_C_tag_val-1; tags:context_A[tag_key-1] = context_A_tag_val-1

lifetime

timeframe

stableDisplay name: LifetimeThe lifetime of the entity. This is a record with two nested fields: start and end, which represent the time when the entity was first and last observed, respectively. Each time an entity is updated, the end time is updated to the current time.

{ start: 2022-07-06T13:36:00.808Z, end: 2024-04-11T06:56:01.204Z }

references

record

stableDisplay name: ReferencesProvides access to static edges pointing to other entities. In this record each nested field represents a relationship type and target type, and the value is an array of target smartscape IDs. This field is hidden by default but can be added using the fieldsAdd command.

{ references[runs_on.host] : [HOST-C251A1173C2B4B39,HOST-0E9038C7C4409D69], references[runs_on.container] : [CONTAINER-68A08967EF4F675B] }

dt.security_context

string[]

resource stableDisplay name: DT security contextThe security contexts associated with the entity. For Smartscape entities, this field is always an array.Tags: permission

[]

Azure resource fields

Contains all fields that are provided by all resources running on Azure, including Azure, Core and K8s entities.

AttributeTypeDescriptionExamples

azure.subscription

string

resource stableDisplay name: Azure subscriptionAn Azure subscription is a logical container used to provision resources in Azure.Tags: permission primary-field

27e9b03f-04d2-2b69-b327-32f433f7ed21

azure.location

string

resource stableDisplay name: Azure locationA specific geographical location of Azure cloud resource.Tags: primary-field

westeurope

azure.availability_zones

string[]

resource experimentalDisplay name: Azure availability zonesAvailability zones of Azure cloud resource.

['1']

azure.resource.group

string

resource stableDisplay name: Azure resource groupA resource group is a container that holds related resources for an Azure solution.Tags: permission primary-field

demo-backend-rg

azure.resource.id

string

resource experimentalDisplay name: Azure resource IDA unique, immutable identifier assigned to each Azure cloud resource.

/subscriptions/27e9b03f-04d2-2b69-b327-32f433f7ed21/resourceGroups/demo-backend-rg/providers/Microsoft.ContainerService/managedClusters/demo-aks

azure.resource.name

string

resource experimentalDisplay name: Azure resource nameUser-provided name of the Azure cloud resource.

demo-aks

azure.resource.type

string

resource experimentalDisplay name: Azure resource typeThe name of a resource type in the format: {resource-provider}/{resource-type}.

Microsoft.ContainerService/managedClusters

Azure entity fields

Contains all field