Skip to content
SecPod  – Documentation
  • Docs Home
  • Categories
    • SanerNow CyberHygiene Platform
    • Products
    • Security Intelligence
    • Supported OSs and Platforms
    • How Tos
    • Release Notes
    • Knowledge Base
    • FAQs
  • Other Resources
  • About SecPod
  • Contact Support
Search this website
Menu Close
  • Docs Home
  • Categories
    • SanerNow CyberHygiene Platform
    • Products
    • Security Intelligence
    • Supported OSs and Platforms
    • How Tos
    • Release Notes
    • Knowledge Base
    • FAQs
  • Other Resources
  • About SecPod
  • Contact Support
  • Docs Home
  • Categories
    • SanerNow CyberHygiene Platform
    • Products
    • Security Intelligence
    • Supported OSs and Platforms
    • How Tos
    • Release Notes
    • Knowledge Base
    • FAQs
  • Other Resources
  • About SecPod
  • Contact Support

SanerNow CyberHygiene Platform

  • Platform Function Guides
  • Getting Started with SanerNow
  • How does SanerNow’s deployment architecture work?
  • Pre-requisites for SanerNow Deployment

Products

SanerNow AVM
  • What’s New in SanerNow?
  • Product User Guides
  • Overview of SanerNow Advanced Vulnerability Management
Vulnerability Management
  • SanerNow Vulnerability Management User Guide
Patch Management
  • SanerNow Patch Management User Guide
Compliance Management
  • SanerNow Compliance Management User Guide
Asset Exposure
  • SanerNow Asset Exposure User Guide
Endpoint Management
  • SanerNow Endpoint Management User Guide
Posture Anomaly Management
  • Data Points IT teams can Fetch from SanerNow Continuous Posture Anomaly Management
  • Posture Anomaly Computation Rules
  • SanerNow Continuous Posture Anomaly Management Tool Product Guide

Release Notes

  • Release Notes SanerNow 5.3.1
  • Release Notes SanerNow 5.3
  • Release Notes SanerNow 5.2
  • Release Notes SanerNow 5.1
  • Release Notes SanerNow 5.0
  • Release Notes SanerNow 4.8.0.0
  • Release Notes SanerNow 4.7.0.0
  • Release Notes SanerNow 4.6.0.0
  • Release Notes SanerNow 4.5.0.0
  • Release Notes SanerNow 4.4.0.0
  • Release Notes SanerNow 4.3.0.0
  • Release Notes SanerNow 4.2.2.1
  • Release Notes SanerNow 4.2.2.0
  • Release Notes SanerNow 4.2.1.0
  • Release Notes SanerNow 4.2.0.0
  • Release Notes SanerNow 4.1.1.0
  • Release Notes SanerNow 4.0.0.5

FAQs

  • Technical FAQs

Security Intelligence

  • List of IoA (Indicators of Attack) covered in SanerNow
  • List of Vulnerability to Exploit/Malware Mapping covered in SanerNow
  • Compliance Benchmark Coverage
  • Application and OS Remediation Coverage
  • OVAL Definitions Family-wise Distribution
  • OVAL Definitions Class-wise Distribution
  • OVAL Definitions Platform Coverage
  • Security Content Statistics
  • Overview of Security Content and Intelligence

Supported OSs and Platforms

  • Supported Third-party Applications for Patching
  • Operating Systems and Platforms Supported

How Tos

General
  • How to enable SSO authentication policy in SanerNow?
  • How to designate saner agent to perform network scan?
  • How to create new mail settings in SanerNow?
  • How to Co-Brand with your logo?
  • How to fetch the details of the mandatory fields from the Okta account?
  • How to create MFA policy for Okta?
  • How to fetch the details of the mandatory fields from the PingID account?
  • How to create MFA policy for PingID?
  • How to fetch the details of the mandatory fields from the PingOne account?
  • How to create MFA policy for PingOne?
  • How to download and install Saner agent in Mac?
  • How to download and install Saner agent in Linux?
  • How to download and install the Saner agent in Windows?
  • How to update the expiry date of an existing subscription?
  • How to manage users and their preferences using role-based access?
  • How to create a new user in SanerNow?
  • How to onboard a new organization?
  • How to uninstall the Saner agent through SecPod Saner deployer?
  • How to deploy the Saner agent through SecPod Saner deployer?
  • How to install a Saner agent through the command line?
  • How to uninstall the Saner agent through command line?
  • How to create a new account in SanerNow?
  • How to sign-up with SanerNow?
Vulnerability Management
  • How to remediate vulnerabilities from vulnerability management dashboard?
  • How to manage excluded vulnerabilities in SanerNow?
  • How to exclude vulnerabilities in SanerNow VM tool
  • How to automate and schedule vulnerability scans?
Patch Management
  • How to manage excluded patches in SanerNow?
  • How to exclude patches in SanerNow PM tool
  • How to automate patch management in SanerNow?
  • How to roll back patches in SanerNow?
  • How to fix firmware in SanerNow?
  • How to apply missing patches in SanerNow?
  • How to check the status of patching activity?
  • How to apply the most critical patches in SanerNow?
Compliance Management
  • How to run a compliance scan?
  • How to custom create a security policy?
  • How to align with PCI security compliance management?
  • How to align with NIST 800-171 security compliance management?
  • How to align with NIST 800-53 security compliance management?
  • How to align with HIPAA security compliance management?
Asset Exposure
  • How to run an asset scan?
  • How to manage asset licenses?
  • How to blacklist and whitelist applications in SanerNow?
Endpoint Management
  • How to investigate total RAM or CPU threshold (greater than or equal to 80%) in Windows systems?
  • How to collect operating systems information in Windows?
  • How to investigate disks running out of space (<100 MB) in Windows systems?
  • How to collect and investigate disk information on Windows systems?
  • How to collect BIOS information such as serial number, version, manufacturer in Windows systems?
  • How to check the status of Windows Update Server (WSUS/SCCM)?
  • How to collect all software patches that are hidden in the Windows Update server?
  • How to collect all installed patches in Windows systems?
  • How to collect all the important missing patches in Windows systems?
  • How to collect mounted disk information on Linux systems?
  • How to check wireless signal quality in Linux systems?
  • How to check wireless security in Linux systems?
  • How to check all firewall policies on Linux systems?
  • How to collect DNS information on Linux systems?
  • How to collect all Dynamic Host Configuration Protocol (DHCP) information on Linux systems?
  • How to collect ARP entries that are created when a hostname is resolved to an IP address and then to a MAC addressing in Linux?
  • How to check wireless signal quality in Windows systems?
  • How to check wireless security in Windows systems?
  • How to collect all open ports in Windows systems?
  • How to collect all network interfaces in Windows systems?
  • How to investigate DNS cache on Windows systems?
  • How to check all firewall policies on Windows systems?
  • How to collect DNS information on Windows systems?
  • How to collect all Dynamic Host Configuration Protocol (DHCP) information on Windows systems?
  • How to collect all the applications with an unknown publisher in Mac systems?
  • How to collect environment variables set in all operating systems?
  • How to collect all families of operating systems such as Windows, Unix, and macOS?
  • How to collect ARP entries that are created when a hostname is resolved to an IP address and then to a MAC addressing Windows?
  • How to collect all software licenses in Mac systems?
  • How to collect all the applications with an unknown publisher in Windows systems?
  • How to collect a list of applications that are started when you boot your computer?
  • How to identify potentially unwanted programs such as torrent downloaders or unnecessary toolbars running on Windows systems?
  • How to collect all software licenses in Windows systems?
  • How to collect all the applications with an unknown publisher in Linux systems?
  • How to perform system tuning?
  • How to enable/disable devices in SanerNow?
  • How to block blacklisted applications in SanerNow?
  • How to delete and quarantine a file?
  • How to deploy software in SanerNow?
  • How to enable and disable firewall settings in SanerNow?
  • How to start and stop the processes in SanerNow?
Continuous Posture Anomaly Management
  • How to create new response in PA tool?
  • How to build your own detection and response in PA tool?
  • How to whitelist an entire PA ID?
  • How to configure Posture Anomaly tool for custom detection?
  • How to fix Anomalies from PA dashboard?
  • How to fix anomalies from PA Summary page?
  • How to fix anomalies detected in your account from All Anomalies Page?
  • How to delete PA scan preferences?
  • How to schedule PA Scans on Daily, Weekly, and Monthly basis?
  • How to launch Posture Anomaly scans?
Reports
  • How to schedule for the report back up?
  • How to create a custom report in SanerNow?
  • How to configure mail settings to email Report PDF?
  • Home
  • Docs
  • Products
  • Posture Anomaly Management
  • Data Points IT teams can Fetch from SanerNow Continuous Posture Anomaly Management

Data Points IT teams can Fetch from SanerNow Continuous Posture Anomaly Management

  1. ARP Cache
  2. Auto Logon, Last Logon, Last Reboot
  3. Connected MAC Addresses
  4. Disk Utility
  5. File Extended
  6. Health – CPU and RAM Usage
  7. Kernal Information
  8. Mouth Points
  9. PE header
  10. Rlimit Information
  11. Running Process
  12. Shell History
  13. System Control
  14. System Setup
  15. User
  16. Access Token
  17. Account Lockout Policy
  18. Core Storage
  19. Environment Variables
  20. File Audit Permissions
  21. IP Forwarding Status
  22. Kernal Modules
  23. NT Users
  24. Ports/Network Information
  25. RPC Map Information
  26. Scheduled Programs
  27. Software License
  28. System DEP Policy
  29. System Time
  30. User rights
  31. Active Directory Entries
  32. BIOS Information
  33. Cron
  34. Etc Host Information
  35. File Effective Rights
  36. IP Table Rules
  37. Keychain
  38. NVRam
  39. Printer Effective Rights
  40. RPC Net connection Information
  41. SELinux Boolean
  42. Sudo Users
  43. System DHCP
  44. System UAC Policy
  45. Users SID
  46. Alpine System Package Information
  47. BitLocker Information
  48. DHCP Information
  49. Etc Protocol Information
  50. Firewall Information
  51. Interface Listener
  52. LaunchD Information
  53. Network devices
  54. Process
  55. RPM Information
  56. SID
  57. SUID Bin Binary
  58. System’s DNS
  59. System root information
  60. Vmstat Information
  61. WSUS SCCM Information
  62. Antivirus Information
  63. Boot Priority
  64. DNS Cache
  65. Etc protocol’s information
  66. Foreign Addresses & Ports
  67. Inet Listening Severs
  68. Local Ports
  69. Operating System Information
  70. Pfctl Information
  71. RPM File Verify
  72. SID SID
  73. SUID bin file
  74. System Exec Shield
  75. Systemd property
  76. Volumes
  77. Authorisation Database
  78. CCE Information
  79. DNS Information
  80. Etc Service Information
  81. GateKeeper
  82. Install Applications
  83. Lockout Policy
  84. Package Information
  85. Property List (plist)
  86. RPM Verify Package
  87. Service
  88. Symlink
  89. System Metric
  90. Text File Content
  91. XML File Content
  92. WUA Update Searcher
  93. AppArmor Status
  94. CPE Information
  95. DPKG Information
  96. Windows Events
  97. Group Information
  98. Installed Patches
  99. Logged-In Users
  100. Partitions
  101. Registry
  102. Routing Table
  103. Service Information
  104. SYSCTL
  105. System restore
  106. Task Scheduler Information
  107. WSUS and SCCM
  108. Audit Event Policy’
  109. CVE Information
  110. Device Information
  111. Family of Operating Systems
  112. Group SID
  113. Network interface
  114. Logon Information
  115. Password/User Information
  116. Registry Key Audit Permissions
  117. Run Command History
  118. Shadow File
  119. System ASLR Status
  120. System Route Information
  121. Uname Information
  122. Wireless Information
  123. Audit Event Policy Subcategories
  124. Computer Information
  125. Disk Encryption
  126. File
  127. Grub Config
  128. Junction
  129. Missing Patches
  130. Password Policy
  131. Registry Key Effective
  132. Run Level Information
  133. Share Resources
  134. System Autorun Information
  135. System Profiler
  136. WMI
What are your Feelings
Share This Article :
  • Twitter
  • LinkedIn
Updated on February 10, 2023
Posture Anomaly Computation Rules
Copyright 2023 - SecPod. All Rights Reserved. Privacy Policy.