
How waivers work
Waivers temporarily affect audit scoring for managed systems. Policy Auditor provides three
types of waivers with each one exhibiting different functionality. Waivers only appear on the
Waivers tab when a user with the proper permissions grants approval for the waiver to take
effect. Depending upon the internal security policies of your organization, the persons who
request waivers and the persons who grant them may be different people. However, a person
who has the permissions to grant waivers may request a waiver and grant it from the same
screen.
Policy Auditor waivers provide a way for you to:
• Bypass auditing a system
• Force the result of a benchmark rule to be Pass. This potentially alters the benchmark score
of a system
• Exclude the result of a benchmark rule, thus altering the benchmark score of a system
DescriptionSetting
A name that you give to a waiver. The name does not have to be unique.Waiver Name
The three types of waivers are Exception, Exemption, and Suppression.Waiver Type
The system to which the waiver applies. Each waiver can only be assigned
to only one system.
System
You are required to assign a benchmark to Exception and Suppression waivers.
Exemption waivers are system-based and, when you request a waiver, Policy
Auditor does not allow you to assign a benchmark to them.
Benchmark
You are required to assign a rule to Exemption and Suppression waivers. The
list of rules is automatically generated when you select an active benchmark.
Rule
The date when a waiver takes effectStart date
The date when a waiver is no longer in effectExpires
Descriptive information about the waiverNotes
A waiver may have a status of Requested, Upcoming, In-effect, or Expired.Status
The name of the user who grants, or enables, a waiverGranted by
Waivers catalog
The Waivers Catalog is shown in the bottom pane of the Waivers tab. The catalog allows
you to view the various properties of your waivers. You can select the properties you want to
view by clicking Options, then Choose Columns. From there, you can choose the columns
that you want to view in the catalog.
DescriptionColumn
The View action appears under the Actions column.
Depending upon the status of the waiver and your
Actions
permissions, you may Expire or Delete a waiver by clicking
View.
You are required to assign a benchmark to Exception and
Suppression waivers. Exemption waivers are system-based
Benchmark
only and, when you request a waiver, you cannot assign
a benchmark and a rule to them.
The date when a waiver is no longer in effectEnd Date
You are required to assign a rule to Exemption and
Suppression waivers. The list of rules is automatically
generated when you select an active benchmark.
Rule
Creating and Managing Waivers
How waivers work
McAfee Policy Auditor 5.0 Product Guide46
Commentaires sur ces manuels