Edit vulnerable items in bulk in Vulnerability Response
Edit vulnerable items in bulk to save time by selecting fields and running an asynchronous bulk edit job in the background.
Avant de commencer
Pourquoi et quand exécuter cette tâche
Persona and granular roles are available to help you manage what users and groups can see and do in the Vulnerability Response application. For an initial assignment of the persona roles in Setup Assistant, see Assign the Vulnerability Response persona roles using Setup Assistant. For more information about managing granular roles, see Manage persona and granular roles for Vulnerability Response.
Procédure
- Navigate to All > Vulnerability > Vulnerabilities > Vulnerable Items.
-
Select the vulnerable items by performing one of the following actions:
- Select the check box next to each item if you want to use the Only Selected Items option in the bulk-edit-vis.html#bulk-edit-vis__entry-be-record-selection field.
- Apply filters if you want to use the All Vulnerable Items that match filter option in the bulk-edit-vis.html#bulk-edit-vis__entry-be-record-selection field.
- Select the Bulk Edit button.
-
On the Bulk Edit modal, fill in the fields.
Field Description Record Selection Records to update. Choices are: - Only Selected Vulnerable Items
- All Vulnerable Items that match filter
- Remediation task
- Vulnerability entry
State Change for the State in the vulnerable item. Choices are: - Do Not Update
- Open
- Under Investigation
- Awaiting Implementation
- DeferredRemarque :
- When you select this option, the Reason, Short description, Until,and Additional information fields appear.
- When you defer VITs, a remediation task is created and this task is sent for approval.
- ClosedRemarque :
- When you select this option to mark the records as false-positive, the Reason, Short description, Until,and Additional information fields appear.
- When you mark the records as false-positive, a remediation task is created and this task is sent for approval.
- Resolved
Preferred Solution Solution that is targeted for remediating all the vulnerable items that are selected for bulk edit. Select the change for the Preferred Solution field in the vulnerable item (VITs). Choices are from a lookup list of available preferred solutions for the VITs selected. Remarque :- The set of available preferred solutions is an intersection of all potential solutions of the vulnerabilities across all selected VITs.
- When selecting Record selection > Vulnerability Entry for a bulk edit, all VITs for the vulnerability will be set to
the selected preferred solution.Remarque :This operation doesn’t set the Preferred solution at the vulnerability entry level. Setting the Preferred solution at the vulnerability entry level would set the Preferred solution for all new VITs going forward. The bulk edit only modifies the current set of VITs.
- Distinct vulnerabilities across the selection criteria are limited to 500. If there are more than 500 distinct vulnerabilities, a warning message displays asking you to select VITs with different criteria for setting the Preferred solution.
The total number of solutions that can be shown in the lookup list is limited to 170. If there are more than 170 solutions, a warning message is displayed.
The updated value is shown in the Vulnerable item list view.
Preferred patch Patch that is targeted for remediating all the vulnerability items selected for bulk edit. Remarque :- You must install Patch Orchestration to view the list preferred patches.
- The set of available preferred patches is an intersection of all potential patches across all selected VITs.
- Distinct vulnerabilities across the selection criteria are limited to 500. If there are more than 500 distinct vulnerabilities, a warning message displays asking you to select VITs with different criteria for setting the Preferred patch.
The total number of patches that can be shown in the lookup list is limited to 170. If there are more than 170 patches, a warning message is displayed.
Reason Reason for deferring records: - Awaiting Maintenance Window
- Fix Unavailable
- Risk Accepted
- Mitigating Control in Place
- Other
Reason for closing records:- False PositiveRemarque :
- When you select the this option, the Short description, Until,and Additional information fields appear.
- A remediation task is created when you mark the records as False-positive and this task is sent for approval.
- Cancelled
- Fixed
Remarque :This field appears when you select the State as Deferred or Closed.Short description Brief note describing the reason for deferral and Closed-False positive requests. This information reflects in the Description field of the Remediation task that is created for deferral and Closed-False positive requests. Remarque :This field appears when you select the State as Deferred and Closed-False positive.Until Date till which the record remains deferred. Remarque :This field appears when you select the State as Deferred.Additional information Any other necessary information. This information reflects in the Additional Information field in the Overview tab. If your deferral request is approved, this additional information appears as deferral notes in both VIT and remediation task. Remarque :This field appears when you select the State as Deferred and Closed-False positive.Unassign All the selected items are unassigned for the assignment group and remediation owner. For more information on how a remediation owner can remove the assignments from vulnerable items, see Remove assignments from vulnerable items for you or your groups. Remarque :- This field appears when you select the State as Do Not Update.
- When you unassign records, a remediation task is created and this task is sent for approval.
Assignment group Assignment group for the VIT. Select manually or use Assignment Recommendations if it’s enabled. Remarque :This field is disabled when you select the Unassign check box.Work notes Text that you enter to describe the changes. -
Select OK.
A bulk edit asynchronous job updates the selected records. The job number with a link is displayed on the Vulnerable Items page where you can view its status. A remediation task is created with the selected vulnerable items when you defer, unassign, or close (false-positive) vulnerable items in bulk. And this remediation task is sent for approval.