Getting started with compliance


The following topics introduce you to the concept of compliance management in TrueSight Server Automation.

Tip

BMC Education Services provide Foundation courses covering the topics discussed in the walkthroughs available in this section. The education classes discuss when and why to make use of various features as well as the “how-to”. If you are interested in looking deeper into these topics, we recommend that you check out the Server Automation education offerings at TrueSight Server Automation Training.

This section includes the following topics:

Topic

What is it about?

This topic introduces you to the concept of compliance in TrueSight Server Automation.

This topic walks you through the process of setting up a Compliance officer, who is in charge of performing compliance analyses, and limiting permissions so that this user cannot perform other types of actions in TrueSight Server Automation.

This topic walks you through the process of loading compliance content. Compliance Content libraries contain rule sets to automatically analyze the compliance of servers with regulatory standards and best-practice policies, including HIPAA, DISA STIG, SOX, PCI, and CIS. 

This topic walks you through the process of creating a simple compliance template using TrueSight Server Automation.

This topic walks you through the process of performing a compliance audit based on a policy.

This topic walks you through the process of examining the results of a compliance check and then exporting those results into a report.

This topic walks you through the process of remediating a compliance failure, that is, correcting deficiencies that were discovered on a server by a Compliance Job.

This topic walks you through the process of using Compliance Job results to create an exception for a compliance rule and then running the Compliance Job again to see how the results show the exception. 

This topic walks you through the process of using TrueSight Server Automation to create a remediation object that can be deployed to servers that fail a Compliance Job. Deploying the remediation object can make the failed server compliant. 


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*