# Qualys integration error

**URL:** <https://discuss.elastic.co/t/qualys-integration-error/361461>\
**Category:** Elastic Agent\
**Tags:** integrations\
**Created:** [June 14, 2024, 5:53am UTC](https://discuss.elastic.co/t/qualys-integration-error/361461 "2024-06-14T05:53:31Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Eljafopregunta](https://avatars.discourse-cdn.com/v4/letter/e/13edae/32.png) [@Eljafopregunta](https://discuss.elastic.co/u/Eljafopregunta)\
**Post date:** [June 14, 2024, 5:53am UTC](https://discuss.elastic.co/t/qualys-integration-error/361461/1 "2024-06-14T05:53:31Z")

</div>

Hello,  
Yesterday, I updated the Qualys integration, and now the integration has stopped working. I tried to read the request to the Qualys API in the "configs" tab of the integration, but it only shows this error:

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/1/0/10aa34568483f2d5898350b650578fcafbbed9f8.png)  
Is this error only of my cluster?

---

<div class="post-metadata">

**Author:** ![kcreddy](https://avatars.discourse-cdn.com/v4/letter/k/6f9a4e/32.png) [@kcreddy](https://discuss.elastic.co/u/kcreddy)\
**Post date:** [June 14, 2024, 6:32am UTC](https://discuss.elastic.co/t/qualys-integration-error/361461/2 "2024-06-14T06:32:00Z")

</div>

Hey,

This PR: [[Fleet] Fix cloudflare template error by criamico · Pull Request #182645 · elastic/kibana · GitHub](https://github.com/elastic/kibana/pull/182645) fixes the issue, but will be available in `8.14.1`. Essentially, it seem to be how the `escape_string` function is not handled properly when the parameter is not set i.e., `null` or empty.

For qualys, [integrations/packages/qualys\_vmdr/data\_stream/user\_activity/agent/stream/cel.yml.hbs at main · elastic/integrations · GitHub](https://github.com/elastic/integrations/blob/main/packages/qualys_vmdr/data_stream/user_activity/agent/stream/cel.yml.hbs#L18-L20) it seems that `escape_string` is used in `username`, `password`, and `initial_interval`. Probably one of them is not defined, and hence causing this error.

---

<div class="post-metadata">

**Author:** ![Eljafopregunta](https://avatars.discourse-cdn.com/v4/letter/e/13edae/32.png) [@Eljafopregunta](https://discuss.elastic.co/u/Eljafopregunta)\
**Post date:** [June 17, 2024, 6:19am UTC](https://discuss.elastic.co/t/qualys-integration-error/361461/3 "2024-06-17T06:19:39Z")

</div>

Thank you, updating the cluster worked for the 'settings' section, but the integration is throwing the following error. It seems that the dates are not being sent correctly; is it a problem with the host where my agent is located?

```auto
[
  <?xml version="1.0" encoding="UTF-8" ?>
  <!DOCTYPE SIMPLE_RETURN SYSTEM "https://qualysapi.qg4.apps.qualys.com/api/2.0/simple_return.dtd">
  <SIMPLE_RETURN>
    <RESPONSE>
      <DATETIME>2024-06-17T06:13:06Z</DATETIME>
      <CODE>1905</CODE>
      <TEXT>parameter since_datetime has invalid value: 2024-06-16T06:13:05.598422609Z (unsupported date format)</TEXT>
    </RESPONSE>
  </SIMPLE_RETURN>
  ,
  Processor 'conditional' with tag 'fail_on_cel_error' failed with message 'CEL program returned an error. Skipping ingest pipeline execution.'
]

```

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/2/2/2225e3d34d108c8ca79f462dc3e4507e33c1084b.png)

error.code 400  
error.id 400 Bad Request

---

<div class="post-metadata">

**Author:** ![kcreddy](https://avatars.discourse-cdn.com/v4/letter/k/6f9a4e/32.png) [@kcreddy](https://discuss.elastic.co/u/kcreddy)\
**Post date:** [June 18, 2024, 6:39am UTC](https://discuss.elastic.co/t/qualys-integration-error/361461/4 "2024-06-18T06:39:26Z")

</div>

There is a bugfix related to formatting of timestamp: [qualys\_vmdr - user\_activity fixes by andrewkroh · Pull Request #10035 · elastic/integrations · GitHub](https://github.com/elastic/integrations/pull/10035)

Please upgrade to this latest version of Qualys integration `3.2.1` to fix the issue. Thanks!
