Assessments
Assessments are a group of tests that scan database infrastructures
for vulnerabilities and provide an evaluation of database and data
security health with real-time and historical measurements.
Creating an assessment
Run security assessments against selected datasources to proactively identify and address vulnerabilities, improve configurations, and harden infrastructures.
Running an assessment
To get the results of an assessment, it must be run once it is created.
Viewing assessment results
You can take various actions while you view the results of an assessment.
Tuning a test
Tests can be optimized by adjusting parameters, applying group exceptions, and test detail exceptions.
Determining test severity
Considerations for determining and altering the severity of Vulnerability Assessment tests.
Deleting an assessment
You can delete an assessment and its dependencies.
Creating a test exception
When a test fails, you can apply an exception to the test. This exception allows the test to pass until a certain date, if specified, or indefinitely.
Group exceptions
Use a test exception to exclude specific members of a group from a security assessment. Run the security assessment against the exception group to see if a specific member of a group is affecting your assessment results. This is useful if you do not want to, or are not authorized to change group settings.
Test detail exceptions
A test exception can be fine-tuned by including an exception group, adding selected members to the exception group, and then adding test detail exceptions.
Modifying the database version and patch level
Manually add the database version and patch level to override a failed vulnerability assessment.
VA summary
The following table list information per test and database key displayed in the VA summary table: test result by unique identifier; cumulative failed age; first failed date/ last failed date; last passed date; and, last scanned date. This information is tracked and users can create a report on this information.