HP BL680c HP Insight Control Environment User Guide - Page 147

Windows, Linux target systems, Scan reports cannot be viewed, A scan was submitted but never started

Page 147 highlights

Windows • The account used to scan the target system is a member of the Administrator group or Domain Administrator group for that system. • Client for Microsoft Networks is installed and enabled. • Vulnerability and Patch Management has share-level access to all target systems. • Remote Registry Service is started. • File and Printer Sharing protocol is installed and enabled. • Default Administrative Shares are enabled. • Server Service is started. • Simple File Sharing is disabled. • The Internet Connection Firewall is configured correctly or disabled, and the target system is configured to respond to ping commands. • The Computer Name/Domain network component is defined. Windows XP Verify that Simple File Sharing is disabled on Windows XP Professional machines that are not part of a domain. Simple File Sharing is enabled by default, disabling network access to Administrative shares on the machine. Linux target systems • TCP/IP network protocol is enabled. • SSH is enabled and listening on the default port 22. • VPM includes PuTTY SSH client and uses the plink session command and PSCP secure copy, as well as SFTP secure file transfer commands. Both protocols 1.5 and 2.0 are supported if they are correctly installed and functioning on the target system. To determine which protocol is running, telnet to port 22 on the target system, read the return banner, and then press Enter. • SSH-1.5-Only protocol 1.5 is supported. • SSH-1.9-Protocol 1.5 and 2.0 are supported. Protocol 1.5 is attempted first. • SSH-2.0-Only protocol 2.0 is supported, the newest and preferred session protocol. Scan reports cannot be viewed If scan reports cannot be viewed in .pdf format because Adobe Acrobat cannot be launched, perform the following procedure: 1. From Internet Explorer, select Tools→Internet Options. 2. Click the Advanced tab, and then scroll to Security. 3. Clear the Do not save encrypted pages to disk option, and then click OK. 4. For more information, see http://support.microsoft.com/ default.aspx?scid=kb;en-us;812935&Product=ie600. A scan was submitted but never started All target systems scanned by Vulnerability and Patch Management must have an IP address that appears in the HP SIM console. If a scan is requested for a target system with no IP address, the scan does not run and an internal error is generated. Be sure that all target systems being scanned have IP addresses that appear in the HP SIM console. Scan results are inaccurate because of overlapping tasks Do not schedule patch acquisition tasks to run while vulnerability scans are running. Patch acquisition tasks cause vulnerability scans to abort. Vulnerability and Patch Management Pack troubleshooting 147

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181

Windows
The account used to scan the target system is a member of the Administrator group or Domain
Administrator group for that system.
Client for Microsoft Networks is installed and enabled.
Vulnerability and Patch Management has share-level access to all target systems.
Remote Registry Service is started.
File and Printer Sharing protocol is installed and enabled.
Default Administrative Shares are enabled.
Server Service is started.
Simple File Sharing is disabled.
The Internet Connection Firewall is configured correctly or disabled, and the target system is configured
to respond to ping commands.
The Computer Name/Domain network component is defined.
Windows XP
Verify that
Simple File Sharing
is disabled on Windows XP Professional machines that are not part of a
domain.
Simple File Sharing
is enabled by default, disabling network access to Administrative shares on
the machine.
Linux target systems
TCP/IP network protocol is enabled.
SSH is enabled and listening on the default port 22.
VPM includes PuTTY SSH client and uses the plink session command and PSCP secure copy, as well
as SFTP secure file transfer commands. Both protocols 1.5 and 2.0 are supported if they are correctly
installed and functioning on the target system. To determine which protocol is running, telnet to port
22 on the target system, read the return banner, and then press
Enter
.
SSH-1.5—Only protocol 1.5 is supported.
SSH-1.9—Protocol 1.5 and 2.0 are supported. Protocol 1.5 is attempted first.
SSH-2.0—Only protocol 2.0 is supported, the newest and preferred session protocol.
Scan reports cannot be viewed
If scan reports cannot be viewed in .pdf format because Adobe Acrobat cannot be launched, perform the
following procedure:
1.
From Internet Explorer, select
Tools
Internet Options
.
2.
Click the
Advanced
tab, and then scroll to
Security
.
3.
Clear the
Do not save encrypted pages to disk option
, and then click
OK
.
4.
For more information, see
ht
tp://suppor
t
.mic
r
o
s
o
f
t
.com/
d
e
f
ault
.asp
x?s
c
id=kb;en
-us;8
1
2
9
3
5&Pr
oduc
t=ie6
00
.
A scan was submitted but never started
All target systems scanned by Vulnerability and Patch Management must have an IP address that appears
in the HP SIM console. If a scan is requested for a target system with no IP address, the scan does not run
and an internal error is generated. Be sure that all target systems being scanned have IP addresses that
appear in the HP SIM console.
Scan results are inaccurate because of overlapping tasks
Do not schedule patch acquisition tasks to run while vulnerability scans are running. Patch acquisition tasks
cause vulnerability scans to abort.
Vulnerability and Patch Management Pack troubleshooting
147