Elasticsearch Dashboard: Installed Applications

Software inventory, host coverage, versions, and vendors.

This dashboard provides an inventory of installed applications and services so security and asset teams can identify software ownership, version concentration, and cryptographic remediation scope.

Panels

PanelPurpose
Application InventoryEstablishes the installed software population and applications requiring crypto review.
Version and Vendor DistributionFinds concentrated versions, vendors, and upgrade opportunities.
Host CoverageMeasures deployment reach and identifies hosts needing follow-up scans.
Application DetailAssigns ownership using paths, processes, services, and cryptographic context.

Key Data Fields

tychon.application.*, process.*, service.*, host.*, library.*, and observer.*.

Reading the Dashboard

Application Inventory

Establishes the installed application population by host, name, path, process identity, and detected version.

Version and Vendor Distribution

Shows vendor and version concentration so upgrade campaigns can focus on the largest or most exposed deployment groups.

Host Coverage

Shows where applications are installed and whether the same application appears across multiple operating-system or infrastructure populations.

Application Detail

Provides executable, service, product, process, and host evidence to validate ownership and define the remediation target.

Filtering and Performance

Use the dashboard time range and global filters to narrow the population before interpreting counts. Preserve host, application, platform, algorithm, and risk filters when moving to related dashboards. Aggregations summarize the filtered documents; missing optional fields mean that a value was not emitted or observed, not that the condition is false.

Related Dashboards

Use the overview page to move between this dashboard and the other dashboard definitions.