Rule 3 - Mapping of Defender for Cloud Apps Resource Types to ServiceNow CMDB CI Classes

Rule Synopsis

These are the rule/s that determine the target CMDB CI Tables/Classes used by CI Sync for each MS Defender for Cloud Apps Resource Type.

The target CI Table/CI Class is used by CI Sync for two purposes:

  1. To search for an existing CIs during a CI Update Operation.

  2. To write new CIs during a CI Insert Operation.

Rule Details and Default

The default table mappings for Primary/Parent Resource Types are shown below.

Primary/Parent Resource Types

Default Target Class/Classes

Cloud Apps

Cloud Apps

cmdb_ci_business_app

The default table mappings for Secondary/Child Records are shown below.

Secondary/Child Records

Default Target Class

N/A - No Child/Sub-Component Records used by this connector

Override Options

Context

Customers may consider changing these mappings to target different CMDB CI Tables/Classes shown above.  This can often be required when existing CIs are already present in the CMDB (in Classes different to those shown below) and CI Sync is expected to correlate to the existing CIs.

Options

  1. The target CI Class can be amended per Asset Type.

  2. The target Related List/Child Record table can be amended per Asset Type.

Overriding via Connection Settings

Not Available - Requires a Custom Data Sync Rule (and therefore a Syncfish Support Plan to modify the default behaviour)

Additional Information

N/A