Download Host Scan Results
GET/api/v30.03/hosts/download
x-prisma-cloud-target-env: {"permission":"monitorHosts","saas":true,"self-hosted":true}
x-public: true
Downloads all host scan reports in CSV format.
This endpoint maps to the CSV hyperlink in Monitor > Vulnerabilities > Hosts > Running hosts in the Console UI.
Note: The query parameters fields
, complianceID
and normalizedSeverity
are not supported for this API endpoint.
cURL Request
Refer to the following example cURL command that downloads all host scan reports to a CSV file called hosts_report.csv
:
curl -k \
-u <USER> \
-H 'Content-Type: text/csv' \
-X GET -o hosts_report.csv \
https://<CONSOLE>/api/v<VERSION>/hosts/download
A successful response displays the status of the download.
Request
Query Parameters
Offsets the result to a specific report count. Offset starts from 0.
Number of reports to retrieve in a page. For PCCE, the maximum limit is 250. For PCEE, the maximum limit is 50. The default value is 50.
Retrieves the result for a search term.
Sorts the result using a key. Refer to the columns in the relevant Prisma Cloud Compute user interface to use them as sort keys.
Sorts the result in reverse order.
Filters the result based on collection names that you have defined in Prisma Cloud Compute.
Scopes the query by cloud provider.
Filters the result based on cloud account IDs.
Scopes the query by resource ID.
Scopes the query by cloud region.
Retrieves the fields that you need in a report. Use the list of fields you want to retrieve. By default, the result shows all fields of data.
Filters the result based on hostnames.
Filters the result based on OS distribution names.
Provides the minimal image data. Information about vulnerabilities, compliance, and extended image metadata are skipped. Default is false.
Filters the result based on cluster names.
Filters the result based on compliance IDs.
Retrieves the host names that were scanned by the agentless scanner.
Retrieves the host names that were skipped during an agentless scan. Default is false.
Retrieves the result in the normalized form of low, medium, high, and critical based on vulnerability's severity level. Default is false.
Responses
- 200
- default
OK