Compliancy Reporting

Hi Everyone,

I work for a MSSP in the Netherlands and we are considering using a different vulnerability platform as the current one (Tenable). Greenbone was one of the recommendations proposed by the Reddit community, hence my question here.

So I’ve been testing with the Source Edition running on top of Kali. Vulnerability scanning works as expected. One thing I don’t seem to understand is compliance. I’m able to import the newly created CIS templates or use the ones that are synced via the feed. The compliancy scan is successfully executed and I see a succesfull result in a percentage, but there it ends. I can’t seem to figure out how to dive into the details of the scan.
According to the documentation ( https://docs.greenbone.net/GSM-Manual/gos-20.08/en/compliance-and-special-scans.html) it should be possible to download the report, but that option is greyed out. I tried multiple scans with different policies. I’m kinda stuck at the moment.

Does anyone have any idea what I’m doing wrong?

GVM versions

gsad: 20.08.1~git
gvmd: 20.08.1~git
openvas-scanner: 20.8.1
gvm-libs:

Environment

Operating system: Kali Linux 2021.1
Kernel: 5.10.0.kali6-amd64
Installation method / source: Downloaded ISO and installed default.

Hello Michael, welcome to the Greenbone Community!

The option to download compliance reports is only available for users of our Greenbone Security Feed, which is included in our commercial line of appliances.

You may still view the latest report details in the web interface however. For this click the corresponding date in the “Report” column.

If you want to test our full compliance feature set, please contact us at https://www.greenbone.net/en/testnow/ and request a 14-day test key for free. Please also use the GSM TRIAL appliance from the same page for testing, as we currently do not offer commercial features for the Greenbone Source Edition!

2 Likes