在强化审计工作台工具中,过滤器集是什么意思
在加强审计工作台工具中,我们有不同类型的过滤器集 1.安全审核员视图 2.开发者视图 3.临界暴露 4.热点等 这些过滤器组是什么以及每个过滤器组之间有什么区别..
提前致谢
In fortify audit workbench tool we have different type of filter set say
1.security auditor view
2.developer view
3.critical exposure
4.hotspot etc
what are those filter set and what are the difference between each filter set..
thanks in advance
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
这些是随产品一起提供的默认过滤器组。可以修改它们以满足您的需求。我只使用安全审核员视图,因为它显示所有问题并让我决定应该修复哪些问题。
默认过滤器说明:
- 安全审核员视图:最全面的问题集
规则。 (显示所有结果)
- 开发者观点:问题包括生产之间的平衡
结果详细说明了所有潜在问题和一组有针对性的问题
可能存在的漏洞。
- 严重曝光:已解决的类别内的问题
事实证明是多个行业的高度优先问题
在各种环境中。 (仅限大坏蛋)
- 热点:开发者特别感兴趣的问题,例如
作为高精度错误。
如果打开“过滤器”选项卡(选项->显示视图->过滤器),您将能够看到这些过滤器是如何定义的。
These are the default filter sets that are delivered with the product. They can be modified to fit your needs. I only use the Security Auditor View because it shows all issues and lets me decide what I should remediate.
Default filter descriptions:
- Security Auditor View: Issues with the most comprehensive set
of rules. (Shows all results)
- Developer View: Issues include a balance between producing
results that detail all potential issues and a targeted set of
possible vulnerabilities.
- Critical Exposure: Issues within categories that have been
proven to be high priority issues across multiple industries and
within a variety of environments. (Only the big-baddies)
- Hotspot: Issues that are particularly interesting to developers, such
as high accuracy bugs.
If you turn on the Filter tab (Options->Show View->Filters) you will be able to see how these filters are defined.