File integrity monitoring
-
Number of issues detected
-
Number of NetScaler instances impacted
-
Date when the last scan was run
-
Impacted NetScaler instances categorized under Critical, High, Medium, and Low severity
-
Impacted NetScaler instances that have reported issues using binary signing and verification
-
System scan - Scans all managed instances by default. NetScaler Console decides the date and time of system scans and are disabled by default.
-
On-demand scan - You can trigger the scan manually when required. To run the on-demand scan, click Scan now on the security advisory dashboard.
Console-Detected
-
IP address - The IP address of the impacted instances.
-
Scan status - Displays scan error results.
-
Existing file modified -The list of the existing files that are modified.
-
New files added - The list of new files added.
-
Scan time - The time of the last scan.
-
Host name - The host name of the impacted NetScaler.
-
Modal - The modal name of the impacted NetScaler.
-
Click Exclude Files/Directories.
-
Select the required files or directories.orclick Add Files/Directories to add new files. You can add standard shell glob patterns and exclude any paths that correspond to the defined criteria. When a directory is added, all its files are excluded from the scan. Click Add.You can also perform a search to locate particular files or folders. You can also find the exclude list paths by entering a part of a file or folder in the search bar under the
pathoption. The search functionality makes managing and reviewing excluded paths easier.
Points to note
-
Instances supported for File Integrity Monitoring: MPX, VPX instances, and Gateway.
-
The following scan is available for File Integrity Monitoring:
-
File Integrity Monitoring scan: This scan needs the NetScaler Console to connect with the managed NetScaler instance. NetScaler Console does a comparison of the hash values by running a script in NetScaler and collecting the current binary hash values for the NetScaler system files. After the comparison, NetScaler Console provides the result with total number of existing files modified and total number of newly added files. As an administrator, you can contact your organization digital forensics for further investigations on the scan results.
-
-
The following is the list of unsupported platforms: BLX
Device-Reported