Excluding Assets from Scans (Scan Exclusion Policy)
91
IBM Proventia Network Enterprise Scanner User Guide, Version 1.3
Excluding Assets from Scans (Scan Exclusion Policy)
Introduction
Use the Scan Exclusion policy to define specific ports and/or assets to exclude from a scan
of a group of assets. You should define the Scan Exclusion policy at a high level in your
group structure and allow the lower groups to inherit from it. If needed, you can then
override the policy at lower groups.
Scope
The Scan Exclusion policy applies to assessment scans that run as either background or ad
hoc scans. The policy does not apply to discovery scans.
Policy content
Each Scan Exclusion policy defines the following information for the policy’s associated
asset group (and the groups that inherit from it):
●
A list of ports against which no assessment checks will be run. (No checks run against
these ports on any host in the group. This applies to both TCP and UDP ports.)
●
A list of IP addresses not to scan.
Excluding ports
To exclude ports from a scan:
1. In the SiteProtector Console, set up a tab to display asset policies. (See page 74.)
2. On the navigation pane, select a group, and then open the Scan Exclusion policy for
that group.
3. Use a combination of typing the ports numbers and choosing the port numbers as
follows:
■
Type the ports to exclude, separated by commas, in the
Excluded Ports
box.
■
Click
Well Known Ports
, and then select the ports to exclude.
Tip:
You can use the standard multiple-select techniques of
SHIFT
to select a range,
or
CTRL
to select random ports.
Excluding assets
To exclude assets from a scan:
1. In the SiteProtector Console, set up a tab to display asset policies. (See page 74.)
2. On the navigation pane, select a group, and then open the Scan Exclusion policy for
that group.
3. Type the IP addresses (in CIDR or dotted-decimal notation) of the hosts to exclude in
the
Excluded Hosts
box as follows:
■
Type an IP address, and then press
ENTER
(or type a comma).
■
Type a range of IP addresses, and then press
ENTER
(or type a comma).
Example
: 172.1.1.100-172.1.1.200
Note:
A red box may appear around the
Excluded Hosts
box as you type until the
data is validated.
Содержание Proventia Network Enterprise
Страница 1: ...IBM Internet Security Systems IBM Proventia Network Enterprise Scanner User Guide Version 1 3 ...
Страница 8: ...8 Contents IBM Internet Security Systems ...
Страница 14: ...Preface 14 IBM Internet Security Systems ...
Страница 15: ...Part I Getting Started ...
Страница 16: ......
Страница 69: ...Part II Configuring Enterprise Vulnerability Protection ...
Страница 70: ......
Страница 80: ...Chapter 5 Introduction to Enterprise Scanner Policies 80 IBM Internet Security Systems ...
Страница 120: ...Chapter 8 Defining Agent Policies 120 IBM Internet Security Systems ...
Страница 121: ...Part III Scanning ...
Страница 122: ......
Страница 134: ...Chapter 9 Understanding Scanning Processes in SiteProtector 134 IBM Internet Security Systems ...
Страница 150: ...Chapter 10 Monitoring Scans 150 IBM Internet Security Systems ...
Страница 164: ...Chapter 11 Managing Scans 164 IBM Internet Security Systems ...
Страница 165: ...Part IV Analysis Tracking and Remediation ...
Страница 166: ......
Страница 190: ...Chapter 13 Tracking and Remediation 190 IBM Internet Security Systems ...
Страница 197: ...Part V Maintenance ...
Страница 198: ......
Страница 212: ...Chapter 16 Updating Enterprise Scanner 212 IBM Internet Security Systems ...
Страница 218: ...Chapter 16 Updating Enterprise Scanner 218 IBM Internet Security Systems ...
Страница 224: ...Chapter 16 Updating Enterprise Scanner 224 IBM Internet Security Systems ...
Страница 252: ...Chapter 18 Enterprise Scanner Logs and Alerts 252 IBM Internet Security Systems ...
Страница 258: ...Glossary 258 IBM Internet Security Systems ...
Страница 268: ......