Configure properties for Hardware Vulnerability Assessment
Configure the properties required to perform hardware vulnerability assessment.
始める前に
Role required: sn_vul.manage_exposure_assessment and admin
手順
-
Navigate to All > Industrial Workspace Admin > Guided Setup > Operational Technology Vulnerability Response > Hardware Vulnerability Assessment > Configure Vulnerability Assessment Properties > Configure > Vulnerability Assessment.
Alternatively, you can navigate to All > Vulnerability Response > Administration > Properties > Vulnerability Assessment.
-
Perform the following configurations.
Property Description sn_vul_analyst.auto_create_vits: This property determines if new vulnerable item records will be created automatically for fully matched hardware vulnerability assessments. When set to true, new vulnerable item records are created automatically for fully matched hardware vulnerability assessments.Select Yes.
The default value is Yes. When set to Yes, new vulnerable item records are created automatically for fully matched hardware vulnerability assessments.
Deselect if you want to create vulnerable items (VITs) manually.
sn_vul_analyst.assess_unmapped_disc_models: Enabling this property includes discovery models without CPE mappings in the assessment.The default value is No.
Select Yes to perform vulnerability assessments for discovery models of OT devices that aren’t CPE-mapped.
hva_confidence_score_threshold: This property controls the minimum confidence score threshold required for creation of vulnerability assessments. Only matches with scores equal to or above this threshold will generate vulnerability assessments. The threshold value must be a decimal number between 0.0 and 1.0. Default value OOB is 0.75.Edit the value according to your requirement.
The default value is 0.75.注:You can set the value for Confidence Score to 0. But an assessment won't be created with 0 Confidence Score. - Select Save.