Cloud Workload Rules page

The Cloud Workload Rules page allows users to manage rules. Users can create, edit, filter, and manage rules.

Note

Keep the following caveats in mind when working with Rules:

  • Instance Administrators can view all facets of Rules without restrictions, even when Scope-Based Access Control (SBAC) roles are in effect.
  • If you’ve been assigned a custom role with View/Edit permissions limited by SBAC, you may not be able to view specific Rules.
  • You can further narrow your search in a Rules table by using SBAC to limit the scope of the findings, issues, and case counts.

The Widget section enables users to get 'at-a-glance' information based on Platform, Rule type, and Scanner type.

The Cloud Workload Rules page displays both the default rules and user-configured rules, with the following fields.

Rules table columns

Column NameDescription
Rule IDA unique identifier assigned to each rule.
Rule NameThe name of the rule, typically defined by the user or system.
DescriptionA brief summary of the rule's purpose and functionality.
PoliciesLists the policies in which the rule is included.
ControlsCompliance controls associated with the rule for regulatory adherence.
PlatformSpecifies the platform or environment the rule applies to. For example: Linux, Windows or Kubernetes.
ScannerThe tool or method used to evaluate findings, such as Inventory Scanner, Agentless Disk Scan, Host Scanner, Kubernetes Connector or Kubernetes File System Scanner .
SeverityDefines the severity of the rule.
Data TypeThe type of data the rule evaluates. For example: Hosts or Kubernetes Resources
Created ByThe user who created the rule.
Last ModifiedThe date and time the rule was last updated.
Rule TypeIndicates whether the rule is a Built-in or Custom rule.
RemediationDefines the remediation steps to address the detected misconfiguration.
Applicable assetsSupported applicable asset types.
Available actionsIndicates whether the available action is Prevent and Create an Issue or Create an Issue
StandardsAssociated compliance standards or controls
Open issueNo. of open issue related to this rule.

Filter page results

You can use Show filter Panel button in the upper-right corner of the Rules page to filter the existing rules based on different filter criteria, as described below:

Table 6. Rule Filter table

FilterAllowed Values
Rule NameRule names and empty values
DescriptionRule description and empty values
PoliciesNo. of policies
ControlsNo. of controls
PlatformLinux, Windows and Kubernetes
ScannerAgentless Disk Scan, Host Scanner, Kubernetes Connector, Kubernetes File System Scanner and Inventory Scanner
Data typeHosts, Kubernetes Resources
SeverityInformational, Low, Medium, High and Critical
Created bySystem or specific username
Last modifiedSelected date and time
Rule typeBuilt-in and Custom
RemediationRemediation values
Applicable assetsSupported applicable asset types
Available actionsPrevent and Create an Issue and Create an Issue
StandardsAssociated compliance standards or controls
Open IssuesNo. of open issue
Rule IDUnique Id of a rule

Change the layout of the rules table

  1. Navigate to Posture Management > Rules > Cloud Workload.
  2. In the Cloud Workload Rules page, click the More Options icon ().
  3. In the Layout tab, do the following:
    • To add or remove columns, search for a specific column and:
      • Click + to add it to the table.
      • Click - to remove it from the table.
    • To reorder columns, go to the In View section and click and drag columns up or down.
    • To add new columns, go to the Add Columns section and click + to include them in the table.
  4. The table layout updates automatically based on your selections.

Rule details panel

The rule panel displays the following details related to the selected rule:

  • Details of the rule like scanner details, remediation details, and more.
  • Compliance Controls for the rule.

This panel enables you to:

  • Edit the rule
  • Save as new
  • Delete the rule