Remediating configuration settings

UNIX checklists support remediation, allowing console operators to resolve vulnerabilities with a single action. A remediation action can only be executed on an endpoint where the Fixlet is relevant.

About this task

You can audit, assess, and remediate configuration settings using Security and Compliance Analytics (SCA), now known as BigFix Compliance Analytics. For Fixlet checks that support automatic remediation, an action button appears within the relevant Fixlet. Remediation actions can only be applied to relevant and selected endpoints.
Note: Not all Fixlets include a remediation action.
Note: If an external global policy is enabled, any local endpoint changes will be overwritten. In such cases, remediation must be performed using the external global policy solution.
  1. Navigate to the Security Configuration Domain > All Security Configuration > Fixlets and Tasks.
  2. Expand the sub-folders to locate the desired Fixlet.
  3. Open the Fixlet, click the Description tab, and scroll down to the Actions box.
  4. Click the link in the Actions box to remediate the specified policy issue.
    Figure 1. Check containing an action for remediation

    Check containing an action for remediation
  5. Set your parameters in the Take Action dialog and click OK.