Hello Raymond,
as you have already noticed, only these 4 fields are supported.
maintaining asset information is a bit more complex. But the context information you mentioned can be wonderfully maintained and updated via the API.
Depending on the skill, the API can be addressed via python or alternatively with powershell. In order to update an asset with additional context, the respective asset id is addressed and the corresponding fields and values are transferred.
Perhaps the following video by Jose Bravo on the subject of 'qradar api 101' will help you.
https://www.youtube.com/watch?v=swGI5QWB29gBest Regards,
Ralph
------------------------------
Ralph Belfiore
SIEM Expert
pro4bizz GmbH
Karlsruhe
+4972190981727
------------------------------