Network Management
Changes to firmware vulnerability data collection in NCM 2023.4 and later
NCM customers on 2023.3 and earlier who are unable to upgrade need to change some configuration setting to enable firmware vulnerability data to work.
First published date
Last published date
Overview
In NCM 2023.4 and later, firmware vulnerability files are retrieved from the National Institute of Standards and Technology (NIST) using the API. This data is stored in the following files:
- https://downloads.solarwinds.com/solarwinds/data/cve/cve-all.json.zip
- https://downloads.solarwinds.com/solarwinds/data/cve/cpematch.json.zip
When you upgrade to 2023.4 or later, the NCM firmware vulnerability settings are automatically updated to reflect the new process. If you are unable to upgrade, complete the procedure below to update the settings.
Product section
Cause
Resolution
-
Open Firmware Vulnerability Settings:
-
Click Settings > All Settings.
-
Under Product Specific Settings, click NCM Settings.
-
Under Advanced, click Firmware Vulnerability Settings.
-
-
Remove the existing URLs from Vulnerability Data Import Settings, and replace them with:
https://downloads.solarwinds.com/solarwinds/data/cve/cve-all.json.zipNote: Make sure that every polling engine can access https://downloads.solarwinds.com/.
-
Open the Advanced Configuration page:
YourServer/Orion/Admin/AdvancedConfiguration/Global.aspx -
On the Global tab in the NCM.Vulnerability group, change the CpeMatchDataFeedUrl setting to:
https://downloads.solarwinds.com/solarwinds/data/cve/cpematch.json.zip -
Open Firmware Vulnerability Settings again.
-
Click Run Now to ensure that the process runs without errors.