Refining Vulnerability Matching - PAS ICS Integrity - 7.3 - Help - Intergraph

ICS Integrity User Guide

Language
English
Product
PAS ICS Integrity
Subproduct
ICS
Search by Category
Help
PAS Version
7.3

ICS Integrity matches the latest vulnerability data against the information collected from the assets in your inventory. Since the vendor and product names in the vulnerability data and in your inventory might not be consistent, especially across different product versions and vulnerabilities, ICS Integrity needs to use rules to identify potential matches.

The Vulnerability Matching window allows you to refine the matching rules to better match the assets and vendors in your specific environment.

user-vm-matching

You can view information based on your inventory (View by: Inventory), or based on the vulnerability data (View by: CPE), and identify entries that represent the same vendor or the same product. You can also limit vulnerability data to include only data linked to the Industrial Control Systems Cyber Emergency Response Team (ICS-CERT). By adding to and adjusting the matching rules, you can better match your assets.

To modify the matching rules, you must have the ConfigMgr or Administrator role.