> For the complete documentation index, see [llms.txt](https://cortex-docs.paloaltonetworks.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://cortex-docs.paloaltonetworks.com/cortex-xdr-3.x/cortex-xdr-3.x-documentation/detect-threats-and-analyze-data/asset-management/cloud-inventory-assets/manage-your-cloud-inventory-assets.md).

# Manage Your Cloud Inventory Assets

{% hint style="info" %}

### Note

Ingesting and viewing Cloud Inventory Assets requires a Cortex XDR Pro per GB license.
{% endhint %}

&#x20;

1. The following table describes the common side panel components that are displayed for all asset types and subtypes and the specific side panel components based on the asset type selected.

   | Side Panel Component           | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       | Example Image                                              |
   | ------------------------------ | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ---------------------------------------------------------- |
   | Common Side Panel Components   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |                                                            |
   | Header                         | <p>The header row displays the following information about the asset.</p><ul><li>The <strong>Name</strong> of the asset as displayed in the table. If there is no value for the asset name, the <strong>Secondary asset ID</strong> for the asset is used.</li><li>The <strong>Type</strong> of asset.</li><li>Additional specific information per asset type, which is only displayed only if a value is available.</li><li>The cloud <strong>Provider</strong>.</li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       | ![header-example.png](/files/df5pXcqs9Sv77KCAFS3z)         |
   | **Asset Metadata**             | <p>This section includes the following fields, which are displayed if the information is available from the output field values in the table.</p><ul><li><strong>Created at</strong>—Timestamp, which is not always available.</li><li><strong>Updated at</strong>—Timestamp, which is not always available.</li><li><strong>Region</strong>—Displays the region as provided by the Cloud provider.</li><li><strong>Availability zone</strong>—Displays the <strong>Availability zone</strong> according to the cloud provider.</li><li><strong>Geo Location</strong>—Displays the normalized value indicating the geographic region, such as North America or the Middle East.</li><li><p><strong>Project</strong>—Displays the associated project name as provided by the Cloud provider. For each cloud provider, the project is called something else.</p><ul><li><strong>AWS</strong>—Account</li><li><strong>GCP</strong>—Project</li><li><strong>Microsoft Azure</strong>—Subscription</li></ul></li><li><p><strong>Hierarchy</strong>—Displays the hierarchy of the associated <strong>Project</strong> in the cloud provider separated by a forward slash (<code>/</code>) similar to a file path.</p><div data-gb-custom-block data-tag="hint" data-style="info" class="hint hint-info"><p><strong>Note</strong></p><p>The <strong>Project</strong> is called something else in each cloud provider. For more information, see the <strong>Project</strong> description.</p></div></li><li><strong>Public IPs</strong>—Displays a list of external public IPs.</li><li><strong>Private IPs</strong>—Displays a list of internal private IPs.</li><li><strong>Cloud Tags</strong>—Displays any cloud tags or labels configured according to the cloud provider.</li><li><strong>Last Reported Status</strong>—Last reported status of the asset, such as <strong>Available</strong> or <strong>Ready</strong>.</li></ul> | ![asset-metadata.png](/files/K6R8kkzm130OhchpvgkI)         |
   | **Asset Editors**              | <p>A bar chart of the identities of the Asset Editors is displayed. Up to 5 editors are displayed in a horizontal bar chart listing the percentage of editing actions for a single identity. The chart data does not include any actions where the identity could not be resolved. If there are more than 5 editors, then not all editors are displayed, and the rest of the editors are displayed in an <strong>Others</strong> bar.</p><p>The Asset Editor section provides a link (<img src="/files/Q14yk9KG5pAXE1gobRpn" alt="link-icon.png">) to open in a new tab a predefined query in XQL Search on the <code>cloud\_audit\_log</code> dataset to view the edit operations by the identity selected for this asset in the last 7 days.</p><p>A notification about the data is also provided using the format <strong>\*Data since \<timestamp></strong>.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              | ![asset-editors-example.png](/files/6gKGLd1h0GPHR7xf8Age)  |
   | **Internet Exposure**          | <p>When there are any open external ports, the open ports and their corresponding details are displayed.</p><ul><li><strong>Title</strong>—The title format is <strong>\<IP>:\<port></strong>. When you hover your mouse over the title, you expose the <strong>Show banner info</strong> icon, which opens a <strong>Banner</strong> window with the raw JSON text obtained from Xpanse containing the banner, which you can view in <strong>JSON view</strong> (default) or <strong>Tree view</strong>.</li><li><strong>Observed Services</strong>—The type of service observed with the open external port, such as MySQL, HTTP, and TLS.</li><li><strong>Observed at</strong>—A timestamp for when the open external port was noticed.</li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              | ![internet-exposure.png](/files/qLQ6r6Pf3E8awOUBSqZ8)      |
   | Specific Side Panel Components |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |                                                            |
   | **VM Instance**                | <p>The <strong>TYPE</strong> of asset is set to <strong>Compute</strong> and the <strong>SUBTYPE</strong> is set to <strong>VM Instance</strong>. The header includes the following additional fields.</p><ul><li><strong>Machine type</strong>—Displays the type of machine.</li><li><strong>Last started</strong>—Displays the last time the machine started.</li></ul><p>The following data is displayed in the panel.</p><ul><li><p><strong>Disks</strong>—A list of disks, where each disk has the following properties.</p><ul><li>Disk name. When you hover over the disk name, you expose the <strong>Show Disk</strong> icon, which enables you to view in the side panel the associated disk information, such as the disk size in GB.</li><li><strong>Boot Disk</strong>—Boolean value as either <strong>Yes</strong> or <strong>No</strong>.</li><li><strong>Disk Type</strong>—Type of disk such as <strong>ebs</strong> or <strong>persistent</strong>.</li></ul></li><li><p><strong>Network Interfaces</strong>—List of Network Interfaces, where the following is displayed for each network interface if the data exists.</p><ul><li>Name on the network interface.</li><li><strong>IP</strong>—The IP address of the network interface.</li><li><p>When you hover over the network interface name, you expose different icons with different actions that you can perform to open different side panel components.</p><p>-<strong>View associated VPC</strong>—Drills down to the <strong>VPC</strong> side panel component if the ID exists.</p><p>-<strong>View network interface details</strong>—Drills down to the corresponding Network Interface row if the ID exists.</p><p>-<strong>View associated subnet</strong>—Drills down to the <strong>Subnet</strong> side panel component if the ID exists.</p></li></ul></li></ul>                                                                          | ![vm-instance-example.png](/files/5UpcBSqe6B2eKBu47YCs)    |
   | **Disk**                       | <p>Displays the following information in the Header.</p><ul><li><strong>Compute Disk</strong> as the specific cloud assets type.</li><li><strong>Is Encrypted</strong>—Displays a boolean value as either <strong>Yes</strong> or <strong>No</strong> to indicate whether the disk is encrypted.</li><li><strong>Size</strong> of the disk in GB.</li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       | ![disk-example.png](/files/oKlRXacO4GrXjo8fA3IY)           |
   | **VPC**                        | <p>Displays the following information in the Header.</p><ul><li><strong>Virtual Private Cloud (VPC)</strong> as the specific cloud assets type.</li><li><strong>CIDRs</strong>—A list of CIDRs.</li><li><strong>Default</strong>—Displays a boolean value as either <strong>Yes</strong> or <strong>No</strong> to indicate whether this asset is the default VPC.</li></ul><p>The following actions are available only if this information is provided by the cloud provider.</p><ul><li><strong>Show Peer networks</strong>—Pivot to a new tab with the <strong>VPC Networks</strong> table, which is filtered on the list of IDs.</li><li><strong>Show Subnets</strong>—Pivot to a new tab with the <strong>Subnets</strong> table, which is filtered on the list of IDs.</li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            | ![vpc-header-example.png](/files/uvdw9cv2vqNi4njFRjrk)     |
   | **Subnet**                     | <p>Displays the following information in the Header.</p><ul><li><strong>Subnet</strong> as the specific cloud assets type.</li><li><strong>CIDRs</strong>—A list of CIDRs.</li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              | ![subnet-header-example.png](/files/Wn1kCx0ItHk2tHj7z7zd)  |
   | **Cloud Function**             | <p>Displays the following information in the Header.</p><ul><li><strong>Cloud Functions</strong> as the specific cloud assets type.</li><li><strong>Runtime</strong>—Displays the runtime system, such as python3.9.</li><li><strong>Memory Size</strong>—The amount of memory in MB.</li><li><strong>Description</strong>—A description of the cloud function.</li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         | ![cloud-functions-header.png](/files/dq4UhgSMhZiVZAGYWuJj) |
   | **Storage Bucket**             | <p>Displays the following information in the Header.</p><ul><li><strong>Storage Bucket</strong> as the specific cloud assets type.</li><li><strong>Location Type</strong>—Displays the bucket location as either <strong>Regional</strong> or <strong>Multi Regional</strong></li><li><p><strong>Access Type</strong>—Displays the bucket access options as one of the following.</p><ul><li><strong>Public</strong></li><li><strong>Private</strong></li><li><strong>Fine Grained</strong></li><li><strong>Unknown</strong></li></ul></li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | ![storage-bucket-header.png](/files/sSdTceEZIjy399qcLLr2)  |
   | **Security Group**             | <p>Displays the following information in the Header.</p><ul><li><strong>Security Group (FW Rule)</strong> as the specific cloud assets type.</li><li><strong>Group Name</strong> and <strong>Description</strong> for the Security Group, if available. In AWS, there is a name and description for the entire group, while in GCP per rule.</li></ul><p>A Security Group is a list of rules. A separate <strong>Rules</strong> section is displayed in the side panel that lists the following for each rule.</p><ul><li><strong>Name</strong>—Name of the rule.</li><li><strong>Description</strong>—The description of the rule, if it exists.</li><li>Rules icon (<img src="/files/OaI4SQ5my1O9YGRVBysm" alt="rules-icon.png">)—Opens a <strong>Banner</strong> window containing the raw JSON data extracted for the rule, which you can view in <strong>JSON VIEW</strong> (default) or <strong>TREE VIEW</strong>.</li></ul><p>Some providers provide the associated VPC for the Security Group and some provide an associated Network Interface. The actions are dependent on the available data and are exposed when you hover over the <strong>Info</strong> heading under the <strong>Network Interfaces</strong> section.</p><ul><li><strong>View associated VPC</strong>—Drills down to the <strong>VPC</strong> side panel component if the ID exists.</li><li><strong>View network interface details</strong>—Drills down to the corresponding Network Interface row if the ID exists.</li><li><strong>View associated subnet</strong>—Drills down to the <strong>Subnet</strong> side panel component if the ID exists.</li></ul>                                                                                                                                                                                                                                                                                 | ![security-group-example.png](/files/uyahqOU5S8oLpew6z2Uu) |
2. (Optional) Manage cloud inventory assets, as needed.

   At any time, you can return to the **All Cloud Assets** or **Specific Cloud Assets** pages to view and manage your cloud inventory assets. To manage a cloud inventory asset, right-click the asset and select the desired action. Some actions are dependent on the type of cloud asset selected and the particular cell you are performing the action from.

   * **Show rows with ‘\<field name>’** to filter the column list to only display the rows with a specific field name selected in the table.
   * **Hide rows with ‘\<field name>’** to filter the column list to hide the rows with a specific field name selected in the table.
   * **Copy text to clipboard** to copy the text from a specific field in the row of an asset.
   * **Copy entire row** to copy the text from all the fields in a row of an asset.
   * **Open IP View**: for the **External IPs** and **Internal IPs** column fields in the assets table, you can open the IP Address View, which provides a powerful way to investigate and take action on an IP address by reducing the number of steps it takes to collect, research, and threat hunt related incidents.
   * **Open in Quick Launcher**: for the **External IPs** and **Internal IPs** column fields in the assets tables, you can open the **Quick Launcher** shortcut to search for information, perform common investigative tasks, or initiate response actions related to a specific IP address or CIDR.
   * **Show rows 30 days prior to ‘\<timestamp field>’**: for all timestamp fields in the assets tables, you can filter the column list to only display the rows 30 days earlier than the selected timestamp field.
   * **Show rows 30 days after to ‘\<timestamp field>’**: for all timestamp fields in the assets tables, you can filter the column list to only display the rows 30 days after the selected timestamp field.


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://cortex-docs.paloaltonetworks.com/cortex-xdr-3.x/cortex-xdr-3.x-documentation/detect-threats-and-analyze-data/asset-management/cloud-inventory-assets/manage-your-cloud-inventory-assets.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
