SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

SecOps Subscription Units - how does this work?

I'm researching Subscription Unit counts to implement Agent Client Collector Visibility, and hear that SecOps also uses/consumes Subscription Units.  Would like to determine how SecOps works with Subscription Units, and cannot find any info regarding...

How to integrate Servicenow with Palo Alto's Panorama

Hi All, Is there a way to integrate Servicenow with Palo Alto's panorama? What we are trying to do is that from servicenow we want to sent some IPs or URLs to Panorama API & it should create security rules so that these IPs or URLs can be blocked on ...

Resolved! Vulnerable Item assignment rule script

We are looking to refine one of our VR assignment rules to take it a step further and not just assign to an assignment group, but also the assign it to the user contained in the assigned_to field on the CI record. Can anybody help me with the script ...

sjjantz by Tera Expert
  • 2089 Views
  • 5 replies
  • 1 helpfuls

Resolved! How to refresh Remediation task rules/group rules on VR

Hi All, I am working on VR and Config compliance where in I am configuring the assignment rules, Group rules and Remediation target rules. Assignment rules are working fine as there is a scheduled jobs to refresh them but group rules are not getting ...

How to detect configuration changes within an instance

Currently, if you make unintended changes to certain settings in your instance,We want to detect that change.As a detection method, we are trying to monitor whether unintended change logs are output to the event log. For example, in the case of "noti...

____62 by Giga Contributor
  • 1776 Views
  • 2 replies
  • 1 helpfuls

Resolved! How to create a new record when no match found

Hello, the client asked for a capability to Import New Vulnerable Items by a spreadsheet. A transform map has been created for that and now the next requirement is that if the Configuration Item is not found then a new one is created under the "Uncla...

Patrik Z by Giga Guru
  • 2389 Views
  • 4 replies
  • 4 helpfuls

Resolved! XML Parsing Error for Qualys Knowledge base integration run

Hi All, We are using Qualys Integration Module in SN.  One of the Integrations runs "Qualys Knowledge base (Backfill)" is failing with the following error: Encountered error running the integration. Error: Invalid XML response body received from Qual...

Scorpion81 by Mega Expert
  • 3533 Views
  • 9 replies
  • 1 helpfuls

Resolved! Need to auto populate other fields in catalog items ?

Hi all, I have a requirement where I created four fields Name, Department , number and email.I have given type as reference for name if user selects name other three fields should be auto populated any one has script or pointers on this to auto popul...

Options for Splunk integration with ServiceNow

Hi - I am trying to figure out what the best options are when it comes to integrate Splunk with ServiceNow, including for customers that might not (yet) have the SIR module. Could you challenge me on those following options and maybe recommend what t...

Resolved! Activity Due Field Usage

What is the use of Activity Due field in Security Incident table and how it can be used? It is of Due Date field type, will it capture date and time as it has class "GlideDueDate"?

Resolved! Vulnerable Item Detection

We have seen an issue with an end-user not being able to close a VI because of multiple detections being listed on the VI.  From the documentation it states: Detections are only opened or closed by data that is found by a scanner, they do not roll do...

Matt Martin1 by Tera Contributor
  • 5619 Views
  • 6 replies
  • 6 helpfuls

com.glide.attachment.max_size

Hi All, I am looking for a way to create an exclusion for Qualys XML Attachment size in the following property: com.glide.attachment.max_size. Currently, the size is set to 5MB but we want to allow more than that for Qualys as it is throwing below er...

find_real_file.png

Resolved! Vulnerable items closed and reopened by scanner

Hi, Some of our Vulnerable items get closed by the scanner and got reopened by the scanner after a few days if it finds the detection. These VITs are already part of a Remediation task (a.k.a Vulnerability group). If the group is in the "Under Invest...

tkrishna29 by Giga Guru
  • 4959 Views
  • 7 replies
  • 4 helpfuls