The Vulnerability Response Patch Orchestration application correlates patches with vulnerable items and provides visibility into the missing patches for your critical vulnerable items and assets.
Vulnerability Response Patch Orchestration is a dependent plugin for Patch Orchestration integrations.
The key features include:
- View missing patches on your assets.
- View patch details about the supersedence, SLA, and status of deployments.
- Select the preferred patch that matches the vulnerability of the vulnerable item.
- States of vulnerable items automatically transition from "Open" to "Awaiting Implementation" when a preferred patch exists.
- View patch progress information at the remediation task level that is available in the Vulnerability Response Workspaces and in the classic UI.
Fixed:
- Performance improvements for the patch rollup scheduled job that rolls up the patches to vulnerability and vulnerable item (VIT) records. You might see that the scheduled job runs more quickly.
-
The Vulnerability Response application and its dependent plugins must be installed and activated.
-
The following dependent plugins for Vulnerability Response must be activated: om.snc.vul_dep plugin for Vulnerability Response Dependencies om.snc.change_management plugin "Change Management - Core" is required for change management with Vulnerability Response.
-
The following Security Operations applications must be installed and activated. Click the View Dependencies and Licensing Requirements link in the right panel for more information about these applications.
- Security Integration Framework
- Security Support Common
- Security Support Orchestration
- Vulnerability Solution Management
-
Roles required:
- System Admin (admin) for installation of applications
- Vulnerability Admin (sn_vul.vulnerability_admin) for VR configuration
- sn_vul_patch_orch.read_patch and sn_vul_patch_orch.configure_patch for configuring and viewing the patches