Configuring Posture Assessment Settings
Configuring Posture Assessment Settings
Endpoint Security periodically scans endpoints against the list of applications specified on the signature server and detects vulnerable CVEs in applications.
00:00: Endpoint Security can scan and detect CVEs on endpoints. This video shows how to automatically apply patch updates for detected CVEs.
00:09: Log in to the Check Point Portal. Access the Endpoint Security Administrator Portal and then go to "Policy" and "Access and Compliance" and then click "Compliance and Posture".
00:20: Make sure Enable Vulnerability assessment is enabled and a scan is performed either manually or automatically.
00:28: Select "Enable patch updates" and click "Advanced Settings".
00:32: Select "Enable automated patch management".
00:35: Fill in the required information such as "patch update time", "applications" and "severities" and so on and click "OK".
00:42: Click Save and Install.
00:45: As a final step, review the changes and click "Install".
To configure the Posture Assessment Settings:
After Posture Assessment settings are enabled and the policy is installed, the detected CVE and its CVSS score are visible in Viewing Endpoint Posture.