Skip to content

Scanning Orchestrator

Operations for the Scanning Orchestrator service collection.

LanguageLast Update
Pythonv1.6.6
PowerShell
Gov0.22.0
TypeScriptv0.7.0
Rust
Rubyv1.4.0

OperationDescription
create-schedules
create_schedules
Create scanning schedules
delete-schedules
delete_schedules
Delete scanning schedules
get-combined-schedules
get_combined_schedules
Get combined scanning schedules
get-schedules
get_schedules
Get scanning schedules
get-service-types
get_service_types
Get allowed service types
search-schedules
search_schedules
Search scanning schedules
trigger-scan-by-schedule
trigger_scan_by_schedule
Trigger scan by schedule IDs
update-schedules
update_schedules
Update scanning schedules

Create scanning schedules

Method POST
Route /agentless-scanning/entities/schedules/v1
Scope Agentless scanning configuration: WRITE
PEP 8 create_schedules
body body · dictionary
Full body payload as JSON formatted dictionary.
resources body · array
The resources value.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
resources = [
{
"account_ids": [
"string"
],
"all_accounts": True,
"all_regions": True,
"cadence": {
"unit": "string",
"value": 0
},
"cloud_group_ids": [
"string"
],
"dspm_scanning_config": {
"classification_scan_mode": "string",
"scan_type": "string"
},
"enable": True,
"name": "string",
"provider_type": "string",
"scan_product": "string",
"selected_regions": [
"string"
],
"service_names": [
"string"
]
}
]
response = falcon.create_schedules(resources=resources)
print(response)
[
{
"account_ids": [],
"all_accounts": false,
"all_regions": false,
"cadence": {},
"cloud_group_ids": [],
"enabled": false,
"last_run": "string",
"name": "string",
"provider_type": {},
"scan_config": {},
"scan_product": {},
"schedule_id": "string",
"selected_regions": [],
"service_names": []
}
]


Delete scanning schedules

Method DELETE
Route /agentless-scanning/entities/schedules/v1
Scope Agentless scanning configuration: WRITE
PEP 8 delete_schedules
ids query · string or list of strings
Schedule IDs to delete
parameters query · dictionary
Full query string parameters payload in JSON format. Not required when using other keywords.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
id_list = 'ID1,ID2,ID3' # Can also pass a list here: ['ID1', 'ID2', 'ID3']
response = falcon.delete_schedules(ids=id_list)
print(response)
{
"errors": [
{
"code": 0,
"id": "string",
"message": "string"
}
],
"meta": {
"pagination": {
"limit": 0,
"offset": 0,
"total": 0
},
"powered_by": "string",
"query_time": 0.0,
"trace_id": "string",
"writes": {
"resources_affected": 0
}
}
}


Get combined scanning schedules

Method GET
Route /agentless-scanning/combined/schedules/v1
Scope Agentless scanning configuration: READ
PEP 8 get_combined_schedules
limit query · integer
Number of results to return
offset query · integer
Starting offset for pagination
sort query · string
Sort field and direction. Available fields:
Available values (5)
scan_productprovider_typeenabled
namecreated_at
filter query · string
FQL filter expression. Available fields:
Available values (5)
scan_productprovider_typeenabled
namecreated_at
parameters query · dictionary
Full query string parameters payload in JSON format. Not required when using other keywords.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
response = falcon.get_combined_schedules(limit=integer,
offset=integer,
sort="string",
filter="string")
print(response)
[
{
"account_ids": [],
"all_accounts": false,
"all_regions": false,
"cadence": {},
"cloud_group_ids": [],
"enabled": false,
"last_run": "string",
"name": "string",
"provider_type": {},
"scan_config": {},
"scan_product": {},
"schedule_id": "string",
"selected_regions": [],
"service_names": []
}
]


Get scanning schedules

Method GET
Route /agentless-scanning/entities/schedules/v1
Scope Agentless scanning configuration: READ
PEP 8 get_schedules
ids query · string or list of strings
Schedule IDs to retrieve
parameters query · dictionary
Full query string parameters payload in JSON format. Not required when using other keywords.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
id_list = 'ID1,ID2,ID3' # Can also pass a list here: ['ID1', 'ID2', 'ID3']
response = falcon.get_schedules(ids=id_list)
print(response)
[
{
"account_ids": [],
"all_accounts": false,
"all_regions": false,
"cadence": {},
"cloud_group_ids": [],
"enabled": false,
"last_run": "string",
"name": "string",
"provider_type": {},
"scan_config": {},
"scan_product": {},
"schedule_id": "string",
"selected_regions": [],
"service_names": []
}
]


Get allowed service types

Method GET
Route /agentless-scanning/entities/supported-service-types/v1
Scope Agentless scanning configuration: READ
PEP 8 get_service_types
scan_product query · string
Scan product filter
Available values (2)
dspm_scanningvulnerability_scanning
parameters query · dictionary
Full query string parameters payload in JSON format. Not required when using other keywords.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
response = falcon.get_service_types(scan_product="string")
print(response)
[
{
"name": "string",
"provider_type": {}
}
]


Search scanning schedules

Method GET
Route /agentless-scanning/queries/schedules/v1
Scope Agentless scanning configuration: READ
PEP 8 search_schedules
limit query · integer
Number of results to return
offset query · integer
Starting offset for pagination
sort query · string
Sort field and direction. Available fields:
Available values (5)
scan_productprovider_typeenabled
namecreated_at
filter query · string
FQL filter expression. Available fields:
Available values (5)
scan_productprovider_typeenabled
namecreated_at
parameters query · dictionary
Full query string parameters payload in JSON format. Not required when using other keywords.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
response = falcon.search_schedules(limit=integer,
offset=integer,
sort="string",
filter="string")
print(response)
{
"errors": [
{
"code": 0,
"id": "string",
"message": "string"
}
],
"meta": {
"pagination": {
"limit": 0,
"offset": 0,
"total": 0
},
"powered_by": "string",
"query_time": 0.0,
"trace_id": "string",
"writes": {
"resources_affected": 0
}
}
}


Trigger scan by schedule IDs

Method POST
Route /agentless-scanning/entities/scan-by-schedule/v1
Scope Agentless scanning configuration: WRITE
PEP 8 trigger_scan_by_schedule
body body · dictionary
Full body payload as JSON formatted dictionary.
ids body · array
The ids value.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
id_list = 'ID1,ID2,ID3' # Can also pass a list here: ['ID1', 'ID2', 'ID3']
response = falcon.trigger_scan_by_schedule(ids=id_list)
print(response)
[
{
"account_ids": [],
"all_accounts": false,
"all_regions": false,
"cadence": {},
"cloud_group_ids": [],
"enabled": false,
"last_run": "string",
"name": "string",
"provider_type": {},
"scan_config": {},
"scan_product": {},
"schedule_id": "string",
"selected_regions": [],
"service_names": []
}
]


Update scanning schedules

Method PATCH
Route /agentless-scanning/entities/schedules/v1
Scope Agentless scanning configuration: WRITE
PEP 8 update_schedules
body body · dictionary
Full body payload as JSON formatted dictionary.
resources body · array
The resources value.
from falconpy import ScanningOrchestrator
falcon = ScanningOrchestrator(client_id=CLIENT_ID,
client_secret=CLIENT_SECRET
)
resources = [
{
"asset_filter": {
"aws": {
"account_ids": [
"string"
],
"all_accounts": True,
"all_regions": True,
"regions": [
"string"
],
"service_names": [
"string"
]
},
"azure": {
"all_locations": True,
"all_subscriptions": True,
"locations": [
"string"
],
"service_names": [
"string"
],
"subscription_ids": [
"string"
]
},
"cloud_groups": {
"cloud_group_ids": [
"string"
],
"provider_account_ids": [
"string"
],
"service_names": [
"string"
]
},
"gcp": {
"all_projects": True,
"all_regions": True,
"project_ids": [
"string"
],
"regions": [
"string"
],
"service_names": [
"string"
]
},
"provider_type": "string",
"scan_product": "string"
},
"cadence": {
"unit": "string",
"value": 0
},
"enable": True,
"id": "string",
"name": "string",
"scan_config": {
"dspm_scanning_config": {
"classification_scan_mode": "string",
"scan_type": "string"
}
}
}
]
response = falcon.update_schedules(resources=resources)
print(response)
[
{
"account_ids": [],
"all_accounts": false,
"all_regions": false,
"cadence": {},
"cloud_group_ids": [],
"enabled": false,
"last_run": "string",
"name": "string",
"provider_type": {},
"scan_config": {},
"scan_product": {},
"schedule_id": "string",
"selected_regions": [],
"service_names": []
}
]