If your security incident has one or more configuration items (servers, computers, and
so on), they can be scanned for vulnerabilities from the Security Incident Response form.
Before you begin
The Vulnerability Response
plugin must be activated.
Role required: sn_si.write
Procedure
-
Create a security
incident and include at least one resource.
You can also open an existing incident that has configuration items.
-
When you have completed your entries on the form, select and hold (or right-click) the form header and select Save.
After the record has been saved, a
Scan for Vulnerabilities related link appears.
Note: If the Scan for Vulnerabilities related list is not shown, you must navigate to , set up at least one scanner, and set its default to true.
-
Select Scan for Vulnerabilities.
Note:
A message appears at the top of the security incident form, along with a link to the scan record.
-
You can Select the scan request number to view the scan record.
The incident details show the results of the scan in the Security Scan Request record.