Cloning Threat Model Entities

Cloning a Threat Model entity creates a separate copy of the entity. Changes made to cloned entities are not reflected in original entities.

Reasons to Clone Threat Model Entities

Cloning Threat Model entities can be helpful when:

  • You want to edit information and make comments independently from existing entities.
  • Creating new Threat Model entities similar to existing entities. Cloning enables you to use existing entities as templates.

Cloned Attributes

All Threat Model entity attributes are cloned except for Publication Status and User Assignment.

Cloned Threat Model entities also maintain observable associations held by the original entity. Though associations are maintained, the associated observables themselves are not cloned.

Note: Entities derived from premium intelligence feeds cannot be cloned.

To clone a Threat Model entity:

  1. Navigate to the details page of the threat model entity you want to export.

  2. Under Actions, click Clone. If Clone is not displayed, the entity cannot be cloned due to the above.

  3. Enter a Name for the cloned entity.
  4. Select a Visibility setting for the cloned entity and any Trusted Circles that you want to share the entity with.

    Entities that are either Anomali Community or owned by your organization can be given any Visibility.

    Entities owned by other organizations may only be cloned as My Organization entities.

  5. Click Save.