21.3 enhancements
Integration with Tenable.sc
TrueSight Automation Console integrates with Tenable.sc directly (without importing the XML files) to retrieve vulnerability scan results. You can analyze these vulnerabilities and create remediation operations to resolve them. To enable this integration, you must configure the Tenable.sc connector. For details, see Configuring-the-Tenable-sc-connector.
Ability to share scan files with security groups
You can now share the imported scan files with other security groups. Users of these security groups can then remediate the vulnerabilities that are reported in the scan files. For details, see Working-with-scans.
Mapping multiple patches to remediate vulnerabilities
If a patch catalog imported in Automation Console includes multiple patches that are required to remediate a vulnerability, all these patches are auto-mapped with the vulnerability. To remediate the vulnerability, you can deploy all the patches to the targets in a single remediation operation. Also, you can select multiple patches from the same catalog while manually mapping the remediation content with the vulnerability. For details, see Risks and Working-with-risks.
This feature is currently supported only for the TrueSight Server Automation.
Change automation for TrueSight Network Automation
This release includes change automation support for TrueSight Network Automation. While creating a remediation operation for network devices, you can now create a change request in the change request management system such as BMC Remedy IT Service Management to track and manage approvals for the operation. After the change request is approved, the operation runs according to the schedule.
As an administrator, you can use TrueSight Orchestration - ITSM Automation runbook to enable change automation. For more information, see Change-automation and Enabling-change-automation.
Optional schedule for catalogs
While creating a patch catalog, it is now optional to define a schedule to update the catalog. When you skip the schedule definition, the schedule defined in TrueSight Server Automation is used. You can add, update, and disable the schedule as required. For more information, see Working-with-catalogs.
Ubuntu platform support
This release includes the Ubuntu platform support for patch catalogs. For details, see Working-with-catalogs.
New database authentication
TrueSight Automation Console now supports the SCRAM-SHA-256 authentication for communicating with an external database. For information about configuring this authentication, see Configuring-the-SCRAM-SHA-256-authentication.