Skip to content

Sensors

The Sensors page manages your fleet of discovery agents. Each sensor is a machine running the CBOM sensor process. From here you register sensors, assign scanners, monitor scan activity, and trigger on-demand scans.


Each registered sensor appears as an expandable card showing:

  • Name and sensor ID
  • Status — online (recently checked in) or offline
  • Hostname and OS (auto-detected)
  • Scanner count and total assets discovered

Click a card to expand it and see scanner assignments and management controls.


  1. Click Register Sensor
  2. Enter a descriptive name
  3. Save the displayed Sensor ID and API Key (shown only once)

Deploy the sensor JAR on the target machine with these credentials in sensor.yml. See First Sensor for full setup instructions.


The expanded sensor card shows a table of assigned scanners:

ColumnDescription
Scanner TypeThe scanner engine (e.g., network-tls, filesystem-certs)
Scanner LabelUser-provided label for this assignment
ConfigsNumber of configuration entries
ScheduleScan frequency (hourly, 6h, 12h, daily, weekly)
Last ScanTimestamp of most recent scan
AssetsNumber of assets found in last scan
Statuscompleted, partial, or failed
ActionsScan Now, Edit, Remove

Click Add Scanner to open the scanner catalogue:

  1. Left pane — browse scanner types grouped by category, with search
  2. Right pane — shows scanner description, access modes, asset types produced
  3. Configure — set schedule, label, and scanner-specific YAML/JSON config
  4. Save — the scanner is assigned and will run on next heartbeat

The configuration editor supports both YAML and JSON with a format toggle. Field hints from the scanner’s config schema are shown below the editor.

Click Edit on any scanner row to modify its type, label, schedule, or configuration.

  • Scan Now — triggers a single scanner immediately
  • Force Scan All — triggers all assigned scanners on the sensor

The sensor picks up force-scan requests on its next check-in (within the heartbeat interval).


Below the scanner table, a Scan Runs section shows historical scan activity:

ColumnDescription
ScannerScanner type that ran
LabelScanner label
TargetWhat was scanned
HostnameMachine that ran the scan
StartedScan start time
Statuscompleted / partial / failed (with error count badge)
AssetsCount of assets discovered (clickable — navigates to Inventory filtered by scan run)

Expand a failed/partial row to see the error list.


Additional actions at the bottom of the expanded card:

ActionDescription
Install ScriptGenerate a platform-specific install script (Linux/Windows)
LogsView recent sensor logs
View AssetsNavigate to Inventory filtered by this sensor
Download ConfigDownload the sensor.yml template
Download JARDownload the sensor binary
Delete SensorRemove the sensor registration (admin only)