Set up Attack Surface Testing - User Guide - 2 - Cortex XPANSE - Cortex - Security Operations

Cortex Xpanse Expander User Guide

Product
Cortex XPANSE
Version
2
Creation date
2024-03-28
Last date published
2024-04-29
Category
User Guide
Solution
Cloud

The first time you set up attack surface testing, Cortex Xpanse will prompt you to accept the terms of the End-User Licensing Agreement (EULA), which gives Cortex Xpanse permission to conduct attack surface testing scans. You must have a role that includes edit permission for Vulnerability Testing to accept the EULA. After accepting the EULA, you will be prompted to select whether to run tests against all relevant targets or a specific set of targets.

Note

To view or configure Attack Surface Testing your role must have Vulnerability Testing permission. To check your role-based permissions go to SettingsConfigurationsAccess ManagementRoles, select a role, and find Vulnerability Testing on the Components tab under Incident ResponseDetections.

  1. Navigate to RulesVulnerability Testing.

  2. On the Welcome to Vulnerability Testing page, click Next.

  3. Read the End-User Licensing Agreement and click Accept Terms.

  4. On the Set up Vulnerability Testing page, select one of the following options. In both cases all attack surface tests are enabled by default.

    • Run tests on all targets—This option enables Cortex Xpanse to run all relevant tests on all of your directly-discovered active services. If you select this option, Attack Surface Testing setup is complete.

    • Run tests on specific targets—This option opens the Vulnerability Testing page under Settings, so you can specify the targets on which Cortex Xpanse will run attack surface tests. See ???.

    vuln-test-setup.png