Use the Vulnerability Management component of IBM Data Risk Manager to create and run the assessment scan in
IBM Security Guardium to identify vulnerabilities in
databases.
Procedure
-
Log on to IBM Data Risk Manager Application Suite
(https://<IDRM-Server-IP-Address>:8443/albatross/a3suite).
-
Click the application menu icon
.
-
Click Vulnerability Management.
-
Select a program from the list.
-
Click Create New Assessment.
-
On the Create New Assessment page, set the following options and click
Create Assessment.
| Option |
Description |
| Assessment Name |
IBM Security Guardium vulnerability assessment
name. |
| Scan Type |
Scan type, for example, Database Scanner. |
| Platform |
Database type selection for running the vulnerability assessment process. |
| Run on |
IBM Security Guardium adapter instance for running the
vulnerability assessment process. List contains only the instances for which option Run
VA is selected when the integration instance is created.
|
-
Under Scope of Assessment, add data sources to the transaction based on
the scope or last scan days. You can add multiple data sources.
- Click Add Scope to Transaction.
- Select vulnerability tests from the list and click
Save.
-
Under Pending Transactions on the Transaction View, click the
Start Process icon
.
-
Select Scan Now.
To schedule the scan later, select Scan Later.
To save transaction details after completion of the process under Pending
Transactions for reuse, select Replica.
-
To start the process, click the Trigger Assessment icon
.