Use Asset Inventory to review and manage assets used by system boundaries and monitoring searches.
Assets represent systems, hosts, applications, services, identities, IP addresses, or other scoped entities that can be tied to a system boundary.
Assets can include multiple identifying fields. Monitoring searches should map event fields such as dest, src, host, IP address, or identity fields to the asset data where possible.
When importing assets into a boundary, the app can create or use a scheduled saved search to maintain app-managed system assets while leaving the source lookup untouched.