Views:

Deploy Vulnerability Assessment policies to endpoint groups managed by the Trend Vision One Endpoint Inventory app.

Procedure

  1. Download the Trend Vision One agent installer package and deploy to target endpoints.
    1. In the Trend Vision One console, go to Endpoint SecurityEndpoint Inventory.
    2. Click the Agent Installer tab.
    3. Click the Download button to obtain a local copy of the EndpointBasecamp.exe installer package.
      windowsInstaller=20221017151818.jpg
    4. Deploy and execute the installer package on target endpoints.
    5. For Windows endpoints that require a proxy server to connect to external networks, open a command line editor as an administrator and execute the following command:
      EndpointBasecamp.exe /proxy_server_port <proxy_server_ip_or_fqdn:port>
  2. Organize your agents into Endpoint Groups (required before you can create and deploy Vulnerability Assessment policies).
    1. In the Trend Vision One console, go to Endpoint SecurityEndpoint Inventory.
    2. Click the Endpoint Groups tab.
    3. Create a new group by clicking the add icon (addGroup=20221017153232.jpg).
    4. Specify a group name and an optional description.
    5. Specify whether the criteria settings should use the AND (match all criteria) or OR (match any criteria) operator.
    6. Specify the criteria settings by click the Add criteria button.
      Criteria
      Options
      Endpoint name
      Select an operator, then specify a full or partial name.
      IP range
      Specify the starting and ending IP addresses.
      Operating system
      Select an operating system from the list.
    7. After creating all necessary groups for your agents, click Save.
  3. Create and deploy your Vulnerability Assessment Security Policies.
    1. Go to Security PoliciesEndpoint.
    2. Identify the group you want to monitor using Vulnerability Assessment and click the group name to open the Security Agent Settings panel.
    3. Enable Vulnerability Assessment.
    4. Click Save.
      Note
      Note
      Agents apply the new settings after connecting to the server.
  4. Ensure that the Attack Surface Risk Management app group has permission to read the vulnerability data.
    1. Go to Attack Surface Risk ManagementExecutive Dashboard.
    2. Click the Data sources button at the top right of the screen.
    3. In the Trend Vision One XDR Sensors section, click Trend Vision One Endpoint Sensor.
    4. Verify that the Data upload permission toggle is On.