Fortinet Document Library

Version:


Table of Contents

5.2.5
Download PDF
Copy Link

Running Vulnerability Scans against FortiSIEM

This document provides information about the configurations for running vulnerability scans against FortiSIEM.

Qualys Configuration

Logon to Qualys Vulnerability Management and follow the steps below to run Vulnerability scan:

Step 1: Configure Scan Profile

  1. Go to Scans > Option Profiles and click New > PCI Option Profile.
  2. On the 'New PCI Option Profile' window, click the Scan tab.
  3. Select ‘Unix/Cisco’ Authentication.
  4. Click Save.

Step 2: Setup Host Authentication

  1. Go to Scans > Authentication and click New > Unix Record.
  2. On the 'New Unix Record' pop-up, add the login credentials.
  3. Click the IPs tab and enter the Host IPs and click Create.

Step 3: Add Host IPs to Scan

  1. Go to Assets > Host Assets.
  2. Click New > IP Tracked Hosts.
  3. Enter the new Host IPs and click Add.

Step 4: Launch Vulnerability Scan

  1. Go to Scans > Scans tab.
  2. Click New > Scans and select the Option Profile added in step #2.
  3. Select Host IPs that added in step #2.
  4. Click Launch to start the scan.

Nessus Configuration

Logon to Tenable Nessus Scanner UI and follow the steps below to run Vulnerability scan:

Step 1: Configure Scan and Host IP

  1. Go to Scans and click New Scan > Advanced Network Scan.
  2. Under Settings tab, enter the information about the new scan including the FortiSIEM Host IP under Targets.
  3. Click Save.

Step 2: Setup Host Authentication

  1. Go to Scans and select the Scan added in Step #1.
  2. Click Configure.
  3. Under the Credentials tab, click SSH and enter the FortiSIEM credentials.
  4. Click Save.

Step 3: Launch Vulnerability Scan

  1. Go to Scans and select the Scan Step #1.
  2. Click the 'Launch' icon to start the scan.

Running Vulnerability Scans against FortiSIEM

This document provides information about the configurations for running vulnerability scans against FortiSIEM.

Qualys Configuration

Logon to Qualys Vulnerability Management and follow the steps below to run Vulnerability scan:

Step 1: Configure Scan Profile

  1. Go to Scans > Option Profiles and click New > PCI Option Profile.
  2. On the 'New PCI Option Profile' window, click the Scan tab.
  3. Select ‘Unix/Cisco’ Authentication.
  4. Click Save.

Step 2: Setup Host Authentication

  1. Go to Scans > Authentication and click New > Unix Record.
  2. On the 'New Unix Record' pop-up, add the login credentials.
  3. Click the IPs tab and enter the Host IPs and click Create.

Step 3: Add Host IPs to Scan

  1. Go to Assets > Host Assets.
  2. Click New > IP Tracked Hosts.
  3. Enter the new Host IPs and click Add.

Step 4: Launch Vulnerability Scan

  1. Go to Scans > Scans tab.
  2. Click New > Scans and select the Option Profile added in step #2.
  3. Select Host IPs that added in step #2.
  4. Click Launch to start the scan.

Nessus Configuration

Logon to Tenable Nessus Scanner UI and follow the steps below to run Vulnerability scan:

Step 1: Configure Scan and Host IP

  1. Go to Scans and click New Scan > Advanced Network Scan.
  2. Under Settings tab, enter the information about the new scan including the FortiSIEM Host IP under Targets.
  3. Click Save.

Step 2: Setup Host Authentication

  1. Go to Scans and select the Scan added in Step #1.
  2. Click Configure.
  3. Under the Credentials tab, click SSH and enter the FortiSIEM credentials.
  4. Click Save.

Step 3: Launch Vulnerability Scan

  1. Go to Scans and select the Scan Step #1.
  2. Click the 'Launch' icon to start the scan.