Red Hat NETWORK BASIC - USER REFERENCE GUIDE 4.0 Guia do Utilizador Página 74

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 79
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 73
Appendix 1: Working with SecurityCenter
Architecture
One mode PVS operates under is under the control of a SecurityCenter that provides it with passive vulnerability data and
retrieves scanned data. SecurityCenter has a variety of reporting, remediation, and notification mechanisms to efficiently
distribute vulnerability information across large enterprises. In addition, it can also control a distributed set of Nessus
active vulnerability scanners. By combining active and passive vulnerability scanning, SecurityCenter can be used to
efficiently and accurately manage security across large networks.
Managing Vulnerabilities
A screen capture of SecurityCenter displaying a summary of vulnerabilities detected by the PVS is shown below. These
vulnerabilities can be independently viewed by many different users with different access control. SecurityCenter also
enables security managers to issue recommendations that help guide network administrators as to which vulnerabilities
should be mitigated.
Updating the PVS Management Interface
On occasion, the PVS management interface needs to be updated to provide new or updated features. When managed
by SecurityCenter 4.7.1 or earlier, the PVS web server and interface are not updated automatically by the plugins
provided through SecurityCenter. Therefore, when the web components are to be updated, it must be performed manually
on each PVS.
To manually update the plugins, first download the latest plugins from https://downloads.nessus.org/sc-passive.tar.gz.
Next, log in to the PVS interface as an admin user and navigate to the Configuration page, and then the Feed Settings
tab. The Offline Update section contains the “Browse” button, which opens a dialog box to allow you to select the
archive file to upload. Click the “Upload Archive” button to send the file to the PVS host, which will then update the
plugins. After stopping and starting the PVS service on the host, the new interface will be available for use.
The Passive Vulnerability Scanner is Real-Time
Since the PVS’s vulnerability data is constantly being fed into SecurityCenter and PVS’s plugins are updated by Tenable,
the accuracy of the passive vulnerability data in SecurityCenter greatly enhances the quality of the security information
available to the SecurityCenter’s users.
Vista de página 73
1 2 ... 69 70 71 72 73 74 75 76 77 78 79

Comentários a estes Manuais

Sem comentários