Knowledge Graph
Knowledge Graph
The management screen for browsing and editing graph nodes and edges directly. It has three tabs: Nodes, Edges, and Graph.
Nodes Tab
- Type filter: a searchable dropdown for selecting multiple node types. Type names are localized and also match their English codes.
- Keyword search: partial match on value or display name.
- Click a row to open the node detail panel on the right; check multiple rows to delete them. Deleting a node also removes its attributes and connected edges.
Adding a Node
Press Add Node and pick a type — the value field's placeholder then shows the format
that type expects. For example, a network-service node expects 10.0.1.5:443/tcp,
and a cve node expects CVE-2024-1234.
For types with a declared format, a mismatching value shows an error and disables the Add button. The value is the node's identifier and cannot be changed after creation.
Node Detail Panel
Opens when you click a node; it has three sub-tabs.
- Graph — visualizes the node's neighborhood. Double-click a node or use the Expand menu to unfold more neighbors.
- Properties — edit the display name, risk score, tags, and type-specific attributes. Attributes defined in the schema show their names and input hints; custom attributes can be added as well. Press Save to apply.
- Edges — manage this node's connections (below).
Adding a Connection
Press "Add Connection" in the Edges tab and proceed as follows.
- Choose the direction — outbound (this node → target) or inbound (target → this node).
- Connectable node types are listed as boxes. Each box is a target type, and the chips
inside it are the relationships defined between that type and this node. Only
schema-defined connections can be created. For example, an
ipv4-addrnode's outbound direction shows boxes such as Zone (belongs-to), CVE (has-vulnerability), and Employee (assigned-to). - Click a relationship chip — the target search is then restricted to that type. Existing nodes are listed even before you type anything, so you can pick while seeing what exists.
- Select the target node and press Add.
The connection list shows the direction arrow, relationship name, and target node; remove one with the ✕ button.
Edges Tab (All Edges)
Browse all edges with a relationship-type filter and keyword search. Click a row to edit
edge attributes (for example, the remediation status of has-vulnerability, or the
confidence of attributed-to).
Graph Tab
Search for a node in the top search box to place it on the canvas, then double-click to expand neighbors and explore relationships visually. Clicking a node opens its property panel.