Views:

What are Checks? Parent topic

When a rule is run against the infrastructure (resources) associated with your cloud account, the result of running a Rule against a resource is referred to as a Check. For example, a security group may have 80 TrendAI Vision One™™ – Cloud Risk Management Rules (Checks) scanning for various risks and vulnerabilities.

Viewing Checks Parent topic

To view Checks associated with an account, click Browse all checks on the summary section of the Cloud Risk Management Dashboard.
Each Check has the following information associated with it:
  • Status
    • Failure - rule has failed for a specific resource
    • Success - rule has passed for a specific resource
    • Suppressed - rule has been suppressed and its status will not be included in your compliance score
  • Failure introduced date
  • A message describing the issue
  • Account
  • Region
  • A link to the resource

Check Actions Parent topic

You can take the following actions on a Check:

Failure and Success Definition Parent topic

Every Rule has an implementation associated with it that determines whether a Check against the Rule is successful or not. For example, if a storage resource has public read permissions enabled, the corresponding Rule is applied to all matching resources in your cloud account. If any resource has public read enabled, the Check for that resource is a failure.

Not Scored Checks Parent topic

Some rules are documented by Cloud Risk Management but cannot be tested against your cloud infrastructure due to not being applicable to cloud infrastructure or limitations of the data provided by the cloud provider. Rules that are only informational are identified as Not Scored.
Cloud Risk Management may not be able to test the Rule completely, but can provide you with some high-level information that can be beneficial. For example, you can check whether alternate contacts for your cloud accounts have been set up. You can pass on the information to your team via a communication channel and keep them informed as well.
You can neither ‘Resolve’ or ‘Suppress’ these Rules as they do not affect your compliance score.
To view a list of all Not Scored Rules in your account:

Procedure

  1. Browse All Checks report.
  2. Enter “not scored” in the Filter by resource id, rule title or message.
  3. Click Generate Report.