SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

ACL write Access only for particular field?

I have created a custom checkbox in test table and also added ACL for that field but only the sn_vulc_write role access to it but still i was not able to edit the checkbox i was getting security constraint error message, Then I have edited table leve...

Resolved! Sanitizing non HTML field

We are trying to sanitze feedback from web page, that is comming into a Comment field (string). The documentation mentiones the html_sanitize attribute can be used on all fields to fix that, however still after activating the attribute in dictionary,...

PavelP by Mega Sage
  • 2923 Views
  • 6 replies
  • 1 helpfuls

Resolved! I want to delete a record of Discovered Item

The linked CI from a third party scanner (Tenable.io) is imported into the "Discovered Item", but I would like to know how to remove it.The state of the record is "unmatched".The reason is that there is a request from the customer to delete the CI th...

nagaryu by Tera Contributor
  • 2912 Views
  • 4 replies
  • 2 helpfuls

Application Vulnerability - OWASP Top 10 Category

We have a requirement to correlate identified vulnerability with the OWASP Top category. For e.g. While manually creating vulnerability ( pen test) when a specific CWE is selected, if the selected CWE is mapped to one of OWASP Top 10 then the OWASP c...

Chetan21 by Tera Contributor
  • 1882 Views
  • 1 replies
  • 0 helpfuls

Resolved! Tenable.io - rescan VIs

I'm trying to set up and test the manual rescan for a single VI using the Tenable.io integration with SNow. I have updated the SN w/ Tenable plugin to version 3.0.5 and activated the scheduled integration. When I open the setup assistant for VR I see...

find_real_file.png find_real_file.png find_real_file.png find_real_file.png
Patrik Z by Giga Guru
  • 7519 Views
  • 10 replies
  • 0 helpfuls

Resolved! Vulnerable Item Age information on database view

Hi There I'm not able to view Age data in OOTB Database View - sn_vul_impacted_services ( which is a View connecting Vis to the services that have been impacted by the vulnerability ) I am able to see the age for the VIT but the same age value is not...

find_real_file.png find_real_file.png find_real_file.png

KEV's in Service-Now?

Hey experts, Is anyone bringing in or ingesting KEV's(Known Exploited Vulnerability) in their Service-Now? We have been tasked to bring this data in so we know which Vulnerabilities have a KEV attached to them.  This is the website where they all res...

Resolved! In Vulnerability Response, how do you handle non-persistent VDI's?

We have a large number of non-persistent VDI's. This is causing our Discovered Items matching percentage to suffer, what is the Service-Now best approach in handling non-persistent VDI's?Additional notes on how VDI's work:In VDI, a hypervisor segment...

Egide by Tera Contributor
  • 2664 Views
  • 4 replies
  • 2 helpfuls

Possible to run splunk query from servicenow?

Hi All, Is there is any possibilities to run the Splunk query from ServiceNow end and get the results in some related list or in work notes section? For example below is the query we use in the splunk end to view the specific event by adding the even...

Community Alums by Community Alums  
  • 1298 Views
  • 1 replies
  • 0 helpfuls

CI Lookup Rules for Tenable.sc?

Hi, I have CI lookup rules OOTB for Tenable.io (type Host Name, Tenable.io) I want to create a CI lookup rule HOSTNAME and DNS for Tenable.sc. What type should I use, custom? Should it be the same script shown here?

find_real_file.png
kris29 by Tera Contributor
  • 2041 Views
  • 5 replies
  • 1 helpfuls

Resolved! Business Use Case/Scenario - Remediation Effort

ServiceNow provides a feature to create "Remediation Effort" from the watch topic. When created this "Remediation Effort" in turn creates a Vulnerability Group ( Remediation Task) and assigned to the respective group. Traditionally Vulnerability Grou...

Chetan21 by Tera Contributor
  • 2824 Views
  • 2 replies
  • 1 helpfuls

Resolved! Roles for creating reports and dashboards?

Hi community, What roles are required to create reports and dashboards in the VR module?Are additional roles required or is sn_vul.vulnerability_admin sufficient?  

kris29 by Tera Contributor
  • 8458 Views
  • 1 replies
  • 2 helpfuls