CI Layout Tabs
This guide provides a high-level overview of the tabs available on CMDB configuration item (CI) detail pages.
Details
The DETAILS tab is a primary record view and may show:
- CI Record Information: name, owner, created/modified metadata
- Cloud location/context: account/sub-account, region, AZ, environment
- Identifiers: external IDs (e.g., Instance ID), Cloudaware UUID, provider ARNs/URIs
- Class-specific attributes: instance type, OS, lifecycle state, network IDs, etc.
- Operational summary tiles: cost, scan status, backup status, package posture, application association
Related CIs
The RELATED CIs tab may include:
- Upstream and downstream dependencies – relationships such as “runs on”, “connected to”, “uses”, or “contains”.
- Topology or relationship graphs – visual views of how the CI connects to other resources.
- Relationship tables – tabular lists of linked resources (for example, EC2 instances ↔ EBS volumes, ENIs, security groups, subnets, IAM roles, load balancers).
- Relationship metadata – details such as relationship type and direction, discovery source, and last discovery time.
Capacity Report
The CAPACITY REPORT tab may include:
- Utilization and sizing insights (where telemetry is available). May show:
- Compute/memory/disk/network utilization trends (current + historical)
- Peak/average usage and headroom
- Monitoring status, metrics and incidents count per 30 days from connected monitoring tools. See Integrations for available integration guides.
Security
The SECURITY tab may include:
- Exposure context – indicators such as public IPs, open ports, and security group rules that influence the attack surface.
- Events - Cloudaware IDS data or CloudTrails events
- Vulnerability findings – details such as CVEs, CVSS scores, affected packages, and fix versions.
- Configuration and compliance checks – Compliance Engine(v1) policy violations and benchmark results (for example, CIS or internal controls).
- Evidence and remediation guidance – links to findings, remediation steps, or tickets where integrations are enabled.
Cloudaware Upgradable Packages (Optional)
The tab appears if the corresponding tile is selected on the CI layout, where applicable.
The CLOUDAWARE UPGRADABLE PACKAGES tab may include:
- Name – the instance name associated with the package entry.
- Platform – the operating system platform of the asset, for example Windows.
- Security/Optional checkbox – whether the update is marked as a security-related or optional package.
- Package Age – the numeric age value shown for the package.
- Windows Auto-Install – whether the Windows update is flagged for auto-install.
- Windows Update Name – the full Microsoft update title for the package, including KB where available.
Cloudaware Vulnerabilities (Tenable Asset Vulnerability) (Optional)
The tab appears if the corresponding tile is selected on the CI layout, where applicable.
The CLOUDAWARE VULNERABILITIES tab may include findings from scan sources placed under such sections as:
- Tenable Asset Vulnerability – findings imported from Tenable asset-based scans.
- AWS Inspector EC2 Instance Vulnerability – vulnerabilities detected by AWS Inspector on EC2 instances, usually tied to package/CVE exposure on running AWS hosts.
- Customer Tenable SC Vulnerability – results coming from a customer-managed Tenable.sc deployment.
- CloudAware {Cloud} Instance/VM Vulnerability – a CloudAware-normalized view of vulnerabilities affecting cloud hosts with Breeze Agent and Vulnerability Management enabled.
- Rapid7 Vulnerability - findings imported from Rapid7 scanning solution.
- Qualys Vulnerability – vulnerability results sourced from the Qualys scanner.
- CrowdStrike Vulnerability – findings from CrowdStrike, often endpoint-centric and based on software inventory plus known exposure on protected hosts.
- Orca Vulnerability On AWS Instance – agentless cloud vulnerability findings from Orca for AWS workloads.
Each section typically consolidates instance-level findings into a standardized table with Name, CVSS Base Score, Priority, Severity, Risk, Scan Date (Days Since First Found, First Found), and Vulnerability Age columns.
If vulnerability sources currently return no findings, the relevant sections are empty.
Application
The APPLICATION tab may include:
- Application association – which application or service the CI belongs to.
- Application metadata – attributes such as service owner, criticality, and environment.
- App‑to‑CI mapping – components, tiers, and dependency relationships for the application.
- Actions – options such as attaching the CI to an application, changing the association, or detaching from an application.
Backups
The BACKUPS tab may include:
- Backup state and policies – whether backups are enabled and which policies apply.
- Coverage – what data, disks, or volumes are protected by backups.
- Schedules and retention – backup frequency and retention settings where available.
- Recent backup points – details such as the last successful backup and recent backup history.
- Gaps and issues – indicators for missing policies, failed backups, or uncovered resources.
To access the overview dashboard for backups, use the hamburger menu in the top-left corner -> Backups.
Change Management
The CHANGE MANAGEMENT tab may include:
- Approvals – a view for approval requests, approvals, and rejections for the CI
- Impact context – fields describing impacted services/CIs, risk level, and impact assessment.
- Changes history (audit trail) – a summarized view of key record changes tied back to change processes (depending on configuration).
Tags
The TAGS tab may include:
- Cloud provider tags and CMDB tags – key/value tags as seen in cloud providers and normalized CMDB fields.
- Tag compliance indicators – checks for required tags such as Owner, Cost Center, Environment, or Application.
- Tag actions – UI options to add, edit, or remove tags and, where supported, push updated tags back to the cloud provider.
- Tag‑based search and filters – quick filters or saved scopes driven by tags to support inventory management and reporting.
Systems Manager
The SYSTEMS MANAGER tab may include:
- Managed status – whether the instance is enrolled and managed by the systems management solution.
- Agent status and connectivity – health of the management agent and its ability to reach control planes.
- Inventory – OS‑level information such as installed software or detailed OS attributes.
- Run Command and automation history – a summary of executed commands or automations and their results.
- Patch and maintenance posture – indicators of patch baseline compliance and maintenance window participation (where integrated).