Using Templates to Automate Desktop Security

ControlUp Edge DXEndpoint SecuritySecure DX

In another blog, Eldad discussed the benefits of ControlUp’s latest product, Secure DX. I highly recommend reading that article before jumping into this one, as it will give you an overview of Secure DX, a real-time scanning, detection, and remediation tool.

I will show you how it is used in this and subsequent blogs. In this blog, I will go over the Issues and Template dashboards.

I think managers will spend most of their time on the Issues dashboard, while technologists will spend most of their time on the Template dashboard. I will cover other dashboards in other blogs.
You launch Secure DX from the ControlUp dashboard by clicking the Secure DX (shield) icon in the left navigation panel.

Figure 1 – Secure DX Icon

Overview of Issues

The dashboard will start on the Issues dashboard, giving you an overview of issues you should address.

Figure 2 – Issues dashboard

The top of this dashboard has two widgets: a graph of issues over time and the issues by category: misconfigurations, vulnerability, and compliance.

Under this is a sortable and selectable grid of the issues.

Before diving into the Issues dashboard, let’s look at the Templates tab. This tab allows us to create a set of things to check against and specify what devices to check. This workflow will enable you to schedule a scan and remediate the issues.

An Issues Checklist

I like checklists because they allow me to take specific actions. I think of Secure DX templates as an automated checklist for issues.

I will check for all the CVEs on my environment’s Windows desktop systems for this example. Trying to do this manually would be almost impossible without a tool like Secure DX.
To do this, click Create Template.

Figure 3 – Creating a Template

Give the new template a name (i.e., Desktop OS Critical, and choose from the drop-down menu if you want to select the devices you want to check by Device Groups, Tags, or Operating System. Device groups and tags are assigned using Edge DX. They are handy for creating device subsets by departments, lines of business, and geographical location or when doing a test rollout of new applications.

For this example, I will create a template based on the operating system and assign devices running Windows desktop OSes to it.

Figure 4 – Scanning Devices

I clicked Next: Scanning Scope at the bottom of the dashboard.

I then chose to scan for all the Vulnerabilities. These are known CVE issues that will be looked for.

Figure 5 -Scanning Scope

I clicked Next: Remediation at the bottom of the dashboard. This allowed me to select whether I wanted auto-remediation or not.

Figure 6 – Remediation’s

NOTE: Use caution when remediating issues, as they are very powerful.

For example, in Security Checks under Compliance, you can remove the user from the local admin group. This is a very powerful remediation, but if the device does have a user with administration rights outside of the local admin group and you remove the rights to the local admin users, you will not have a user with admin rights.

I clicked Next: Schedule at the bottom of the dashboard, which brought me to a panel that allowed me to specify when the scan and remediation take place and send a message (optional) to the users when it does.

Figure 7 – Schedule

In the Time slot drop-down menu, you can specify how often you want the actions to occur.

Figure 8 – Schedule details

I clicked Next: Summary at the bottom of the dashboard to verify my template, then clicked Submit to create it.

Figure 10 – List of Templates

The three vertical dots to the far right in each column allow you to disable, edit, duplicate, and delete the templates.

Figure 11 – Template Management

As you can tell by this blog, ControlUp has made it extremely easy to create a template to scan and remediate issues for the devices in your company.

In my next blog, I will return to the Issues dashboard to see how it is used.

Click here for more information on Secure DX or any of our other award-winning products or to schedule a personal demo.

Trentent Tye

Trentent Tye, a Tech Person of Interest, is based out of Canada and its many, many feet of snow. FUN FACT: Trentent came to ControlUp because, as a former customer, the product impacted his life in so many positive ways—from reducing stress, time to remediation, increased job satisfaction, and more—he had to be our evangelist. Now an integral part of ControlUp’s Product Marketing Team, he educates our customers, pours his heart and soul into the product, and generally makes ControlUp a better place. Trentent recently moved to be closer to family. He does not recommend moving during a pandemic.