We have a challenge maintaining the Ignore status of vulnerabilities against assets that have been waived from Active reporting.
By default a new vulnerability's status is Active and reported as such.
What options are available to Ignore an asset's vulnerabilities on a recurring basis or otherwise as new vulnerabilities are detected?
Any constructive feedback in appreciated.
Tony Pedretti
Tony -- two ways to ignore a vulnerability for a given host or hosts --
1. within the html scan report we can choose the interactive "ignore vulnerability" selection for a vulnerability on a chosen host. This will place it in an ignored state for that host going forward.
2.. within the remediation module, you can create a rule to ignore vulnerabilities (defined by a search list) for specific hosts (defined by asset groups / IP's). This method would put the vulnerabilities for those hosts in an ignored state after the next scan (assuming that rule in the remediation policy is acted on before another rule)
Let me know if you want to Webex it or we can go over it in person.
-Paul