Configuring common assessment settings
Use the Common Settings tab in the Assessment policy on the SiteProtector Console to choose settings that define additional scanning behavior for the checks you have selected to run in an assessment scan.
Procedure
1.From the SiteProtector Console, create a tab to display asset policies.
2.In the navigation pane, select a group, and then open the Assessment policy for that group.
3.Click the Common Settings tab.
4.Type the URL or file location for the assessment check Help documentation in the Help HTML Prefix box:
v The IBM ISS Web site location of the latest assessment check documentation.
vThe file location of a locally stored version of the documentation.
Note: If you do not have access to the Internet, but you want to view Help for checks in the Assessment policy, you must copy the files to your hard drive. See Getting vulnerability help for a SiteProtector Console without Internet access for details.
5.If you want to run the checks that are enabled by default, including checks added in an
6.Configure options for service discovery in the Service Discovery section:
Option | Description |
|
|
Discover and report TCP services | Reports active TCP services for which the |
| Service Scan flag is enabled in the Network |
| Services policy. |
|
|
Discover and report UDP services | Reports active UDP services for which the |
| Service Scan flag is enabled in the Network |
| Services policy. |
|
|
7.Configure options for assessment port ranges in the Assessment Port Ranges section:
Option | Description |
|
|
Ports to scan with generic TCP checks | The set of TCP ports to scan with generic |
| TCP checks. You can specify ports using any |
| of the following methods: |
| v Type a port or range of ports. |
| v Click Well known and select ports from |
| the list. |
| v Select All. |
| Note: A generic TCP check is one whose |
| target type is tcp. |
|
|