Files
tsysstaticsites/pages/plan.knownelement.com/Processes/VulnerabilityManagmentNotes.md
Charles N Wyble aaaf39e2ff refactor: use pages/ at root for Git sync
- Flatten structure: pages/{fqdn}/pages/ -> pages/{fqdn}/
 (etc)
- Updated setup.php for point directly at user/pages/{hostname}/
 (envPath . '/pages')
- Git sync will sync 'pages/' folder to user/pages/

Assisted-by: GLM-5 via Crush <crush@charm.land>
2026-03-02 17:05:29 -05:00

635 B

Vulnerability management

  • identify total asset base (use nmap and see if it matches librenms and resolve any discrepancies)
  • perform scans of total asset base (using openvas/lynis/ossim)
  • manage vulnerability ratings/scope
  • notify/escalate to appropriate contacts
  • address the vulns
  • report metrics (i think the apps provide built in dashboards, may need some light modification)

i think ossim can do all the above ,also lynis/openvas (the three combined should provide complete coverage) (network scan/agent based combination)

librenms is our CMDB currently (for identifying assets/contacts). phpipam is our inventory.