Configuring common assessment settings
Use the Common Settings tab in the Assessment policy on the SiteProtector
Console to choose settings that define additional scanning behavior for the checks
you have selected to run in an assessment scan.
Procedure
1. From the SiteProtector Console, create a tab to display asset policies.
2. In the navigation pane, select a group, and then open the Assessment policy
for that group.
3. Click the Common Settings tab.
4. Type the URL or file location for the assessment check Help documentation in
the Help HTML Prefix box:
vThe IBM ISS Web site location of the latest assessment check
documentation.
vThe file location of a locally stored version of the documentation.
Note: If you do not have access to the Internet, but you want to view Help
for checks in the Assessment policy,you must copy the files to your hard
drive. See Getting vulnerability help for a SiteProtector Console without
Internet access for details.
5. If you want to run the checks that are enabled by default, including checks
added in an X-Press Update (XPU), select a policy in the Compliance Policies
section.
6. Configure options for service discovery in the Service Discovery section:
Option Description
Discover and report TCP services Reports active TCP services for which the
Service Scan flag is enabled in the Network
Services policy.
Discover and report UDP services Reportsactive UDP services for which the
Service Scan flag is enabled in the Network
Services policy.
7. Configure options for assessment port ranges in the Assessment Port Ranges
section:
Option Description
Ports to scan with generic TCP checks The set of TCP ports to scan with generic
TCP checks. Youcan specify ports using any
of the following methods:
vType a port or range of ports.
vClick Well known and select ports from
the list.
vSelect All.
Note: A generic TCP check is one whose
target type is tcp.
Chapter3. Enterprise Scanner policies 51