Jump to main content
BigFix Documentation Homepage
BigFix Platform
Patch Documentation
Insights Documentation
The Insights feature of BigFix 11 provides you with advanced analytics and visualizations that you can use to identify risks in your environment and make appropriate business decisions.
Insights Getting Started Guide
Read this guide for an introduction to BigFix Insights. Learn the concepts, terminology, and how to get started with using the feature.
Operator's Guide
Read this guide for an introduction to BigFix Insights. Learn the concepts, terminology, and how to get started with using the feature.
CVE Search dashboard and Web Report
BigFix CVE Search dashboard and Web Report are available as part of a new Vulnerability Reporting site.
Overview
BigFix CVE Search dashboard and Web Report provide operators with ability to analyze vulnerabilities in their environment based on their CVE ID. For each CVE, operator can report on:
Enable CyberFOCUS Site
In the site list, find the site named CyberFOCUS. Click on the site and gather it.
CISA KEV (BOD 22-01) CVE list
CVE Search dashboard and web report also provide latest information on Known Exploitable Vulnerability (KEV) List provided by the Cybersecurity & Infrastructure Security Agency (CISA) Binding Operational Directive 22-01 (BOD 22-01).
Relevant Fixlet Checkbox
CVE Search dashboard and web report provide ability to include/exclude non-relevant Fixlets from view and calculations. To do this, uncheck/check the “Show Relevant Only” checkbox respectively.
Superseded Fixlet Checkbox
BigFix provides a unique view into patches that have been superseded by their vendor. By default, Fixlets for these patches get a relevance statement added to them to ensure that they will not evaluate as relevant on any system. However, a subset of these Fixlets can be evaluated using a “superseded evaluation” setting. Currently, this feature is supported for windows operating system patches.
Migrating from Vulnerability Reporting site
CVE Search used to be published to the Vulnerability Reporting site that has since been deprecated. As of March 31st 2023, this site will no longer receive updates. To continue using CVE Search dashboard and Web Report, HCL recommends unsubscribing from the Vulnerability Reporting site and subscribing to the CyberFOCUS Site.
CyberFOCUS Analytics dashboard
From the BigFix CyberFOCUS Analytics dashboard, you can view various reports that display critical information related to vulnerabilities. The data are represented in the form of graphs and tables, so that the user can quickly become aware of the IT assets and the threats in the environment and take informed decisions to mitigate vulnerabilities.
MITRE APTs report
MITRE Advanced Persistent Threat Groups (MITRE APTs) web report obtains data published through the MITRE ATT&CK® Framework, analyses and compares it with the patch levels of the devices in your BigFix environment, and visualizes the analysis as a bar chart to help you take informed decision to mitigate the security threat.
CISA KEV report
CISA Known Exploited Vulnerabilities (KEV) webreport utilises the data provided by the Cybersecurity & Infrastructure Security Agency (CISA) KEV Catalog and the associated CISA due dates, analyses and compares them with the patch levels of the devices in your BigFix environment, and visualizes the vulnerability intelligence as a bubble chart to assess and prioritize the vulnerabilities.
PLA report
PLA chart allows you to identify and prioritize all important patches (Fixlets) that are required to protect the device from possible vulnerability BigFix environment.
Initiative report
The Initiative Report provides an overview of CVEs (Common Vulnerabilities and Exposures) categorized by different computer groups found in the user's environment. Its purpose is to display the number of vulnerabilities across machines, giving insights into the distribution of vulnerabilities.
ServiceNow Data Flow
This module provides an overview and features of BigFix ServiceNow Data Flow.
ServiceNow Data Flow
This module provides an overview and features of the BigFix ServiceNow Data Flow.
Detailed system requirements
This section provides comprehensive information on the system requirements for Integration Services. Prior to service deployment, it is necessary for the user to possess the access outlined below.
Fundamental concepts
In this module you can find fundamental concepts and terminology of BigFix ServiceNow Data Flow solution.
Deployment and configuration
This module provides the steps to deploy the BigFix ServiceNow Data Flow solution.
ServiceNow Fixlets and Tasks
Learn more about available Fixlets and Tasks for ServiceNow.
Working with basic functions
This module helps you update and validate configuration.
Reference
The following topics contain information on how you can work with the configuration file and settings, the CLI that comes with the package. They also describe how to use the log files for troubleshooting purposes.
Release Notes
The release notes outline the features, updates and patches that are included in each version of BigFix ServiceNow Dataflows, including the latest application updates.
BigFix Insights for Vulnerability Remediation (IVR)
Welcome to the BigFix Insights for Vulnerability Remediation (IVR) documentation, where you can find information about how to install, maintain and use IVR service.
BigFix Insights for Vulnerability Remediation (IVR) v.4
This module provides comprehensive guidance on the installation, maintenance, and operation of the IVR v.4 service. It includes a detailed summary of the entire end-to-end workflow for using IVR v.4.
BigFix Insights for Vulnerability Remediation (IVR)
Welcome to the BigFix Insights for Vulnerability Remediation (IVR) documentation, where you can find information about how to install, maintain and use IVR service.
Extended third-party Windows Application
With Updates for Windows Applications – extended content site, you can deploy updates to a many third-party applications.
Overview
Traditional BigFix Patch content focuses on a limited set of vendors with a specialty in operating system and security patching. The Updates for Windows Applications – extended content site, provides coverage for upgrades to a growing list of third-party applications. This expansion helps you fill gap in proactive patching processes.
Frequently asked questions
Learn the answers to frequently asked questions about updates for Windows applications - extended.
Extended third-party Mac Applications
Updates for Mac Applications Extended provides an automated, standardized process of managing software updates and packages in the BigFix environment. This provides updates for a wide range of third-party software packages.
Overview and Getting started
This section will help you to quickly cover the essential steps to start automating your software package workflows with Updates for Mac Applications Extended.
Enabling Updates for Mac Applications Extended site
Enabling Updates for Mac Applications Extended site ensures that users receive the latest features, bug fixes, and security improvements for their installed apps.
Navigating to Updates for Mac Applications Extended in the BigFix console
You can view Fixlets and Tasks that you can take action on.
Supported applications
For an updated list of supported applications and current versions, see Mac third-party Apps.
Remediate Guides in PDF
Following is a link to the BigFix Remediate user guide in PDF format:
To add feedback about this topic, select the following checkbox: