Connect Qualys
Use this guide to import Qualys vulnerability findings and, with a scan-capable role, trigger scans from Cracken.
Prerequisites
- Access to the Qualys Vulnerability Management module
- Permission to create and activate a Qualys user
- The API base URL for your Qualys platform
- A Cracken realm where you can configure data integrations
Prepare the user and settings
For read-only vulnerability import, create a dedicated user with:
- Reader role
- GUI and API access so the account can be activated and then used through the API
- Manage VM module enabled
- Every Business Unit and Asset Group that Cracken should read
Keep two-factor authentication enabled for GUI access; API authentication continues to use the account's username and password. Activate the account through the email Qualys sends and sign in once. In Vulnerability Management → Reports → Setup → CVSS, enable CVSS scoring.
The Reader role cannot launch scans. If Cracken must trigger scans, grant a dedicated, Scanner-capable role scoped to only the required asset groups.
Record the username, password, and the platform's API URL. Use the API URL for your Qualys platform, not the browser login URL.
Connect Qualys
- Open Integration Center → Data Integrations.
- On the Qualys card, click Install.
- Enter the Username, Password, and API URL.
- Click Test Connection, then Save & Connect.
Cracken can list vulnerabilities within a Reader's asset scope. It can trigger scans only when the configured account has a Scanner-capable role for those assets.
Sources
Next steps
- Data Integrations — Review how connected security data flows into Cracken.
- Cybergraph — See how Cracken uses imported vulnerability data.