Assessments
Assessments are a group of tests that scan database infrastructures
for vulnerabilities and provide an evaluation of database and data
security health with real-time and historical measurements.
Creating an assessment Run security assessments against selected datasources to proactively identify and address vulnerabilities, improve configurations, and harden infrastructures.Finding an assessment Admins can find an existing vulnerability assessment by using the Security Assessment Finder screen.Running an assessment To get the results of an assessment, it must be run once it is created.Simplifying vulnerability assessments through containerization The Vulnerability Assessment (VA) scanner enhances the existing VA security assessment feature with an independent, containerized application that runs outside the Guardium collector.Viewing assessment results You can take various actions while you view the results of an assessment.Tuning a test Tests can be optimized by adjusting parameters, applying group exceptions, and test detail exceptions.Determining test severity Considerations for determining and altering the severity of Vulnerability Assessment tests.Deleting an assessment You can delete an assessment and its dependencies.Creating a test exception When a test fails, you can apply an exception to the test. This exception allows the test to pass until a certain date, if specified, or indefinitely.Group exceptions Use a test exception to exclude specific members of a group from a security assessment. Run the security assessment against the exception group to see if a specific member of a group is affecting your assessment results. This is useful if you do not want to, or are not authorized to change group settings.Test detail exceptions A test exception can be fine-tuned by including an exception group, adding selected members to the exception group, and then adding test detail exceptions.Adding custom comments to a test Add custom comments to a vulnerability assessment test. These comments can be added to pre-defined or custom tests and can be exported or imported between Guardium systems.Modifying the database version and patch level Manually add the database version and patch level to override a failed vulnerability assessment.VA summary The following table list information per test and database key displayed in the VA summary table: test result by unique identifier; cumulative failed age; first failed date/ last failed date; last passed date; and, last scanned date. This information is tracked and users can create a report on this information.