- play_arrow Introduction
- play_arrow Overview
- play_arrow Access and Manage Paragon Automation Account
-
- play_arrow Administration
- play_arrow Introduction
- play_arrow Organization Management
- play_arrow Site Management
- play_arrow User Management
- play_arrow Inventory Management
- play_arrow Audit Logs
-
- play_arrow Observability
- play_arrow Introduction
- play_arrow Troubleshoot Devices
- play_arrow View Network Topology
-
- play_arrow Trust and Compliance
- play_arrow Introduction
- play_arrow Manage Trust Settings and Trust Scores
- Compliance Standards Overview
- About the Compliance Benchmarks Page
- About the Compliance Tailorings Page
- Example: Create a Tailoring Document for NTP Settings
- About the Compliance Checklist Page
- Add a Checklist Template
- Add Checklist for a Device
- Import Scans and Update Rule Results in a Checklist
- Trust Plans Overview
- About the Network Score Formula Page
- Trust Score Overview
- About the Network Score Page
- About the Snapshots Page
- Add a Snapshot for a Target
- play_arrow Manage Compliance Scans
- play_arrow Manage Vulnerabilities
- play_arrow Monitor Integrity
-
- play_arrow Service Orchestration
- play_arrow Introduction
- play_arrow View Service Design Catalog
- play_arrow Manage Customers
- play_arrow Add Resources for Network Services
- play_arrow Manage Service Instances
- play_arrow Provision L3VPN Service
- play_arrow Monitor Service Order Execution Workflows
-
- play_arrow Active Assurance
- play_arrow Introduction
- play_arrow Test Agents
- play_arrow Tests and Monitors
-
- play_arrow Paragon Shell CLI Reference
- play_arrow Introduction
- play_arrow Operational Mode Commands
- file copy
- monitor
- request paragon backup
- request paragon cluster pods reset
- request paragon cluster upgrade
- request paragon config
- request paragon deploy
- request paragon deploy cluster
- request paragon destroy cluster
- request paragon fix-permission
- request paragon load
- request paragon repair-node
- request paragon replace-node
- request paragon restore
- request paragon running-config
- request paragon ssh
- request paragon ssh-key
- request paragon storage cleanup
- request paragon super-user password reset
- request system decrypt password
- request system reboot
- show configuration paragon cluster
- show host disk usage
- show paragon backup
- show paragon certificate expiry-date certificate-type
- show paragon cluster
- show paragon cluster details
- show paragon cluster namespaces
- show paragon cluster nodes
- show paragon cluster pods
- show paragon cluster pods namespace healthbot sort
- show paragon images version
- show paragon images version namespace
- show paragon pvc details
- show paragon version
- play_arrow Configuration Mode Commands
- delete paragon cluster
- load set
- set paragon cluster applications
- set paragon cluster common-services ingress
- set paragon cluster install
- set paragon cluster mail-server
- set paragon cluster nodes
- set paragon cluster ntp
- set paragon cluster papi
- set paragon cluster victoria-metrics
- set paragon monitoring
- set system login
- play_arrow Troubleshooting Commands
- Troubleshoot Using the Paragon Shell CLI Commands
- request support information
- request paragon troubleshooting information
- request paragon debug
- request paragon debug get-tsdb-data
- request paragon debug insights-kafka-data
- request paragon debug kafka
- request paragon debug logs
- request paragon debug logs namespace
- request paragon debug postgres
- request paragon debug redis
- play_arrow Service Orchestration
- About the Service Orchestration cMGD CLI
- set foghorn:core org-id
- set service design default version
- show service order status
- show service order as-json
- show service order as-yaml
- show service designs
- show device dependant configuration
- show insights configuration
- show configuration foghorn:customers
- request service project add
- request service orders sync
- request network resources load
- request service order upload
- request service order place
- request service order modify
- request service order delete
- request service order submit
- request service order provision
- request service design install
- request service design uninstall
-
Configuration Data and Test Results
Paragon Automation checks the compliance of the active configuration on the device with Center for Internet Security (CIS) benchmarks and displays the compliance score. Table 1 lists the results of the configuration tests executed on a device and displayed on the Configuration accordion of the Device-Name page.
You can view the level of compliance of the configuration committed on the device at the top-right corner of the accordion:
Healthy: The configuration committed is compliant with the CIS benchmarks.
Being Monitored: The configuration committed is being monitored for non-compliance with the CIS benchmarks.
Action Needed: The configuration committed is not as per the CIS benchmarks and hence not compliant. You must intervene to ensure compliance.
Urgent Action Needed: The configuration committed is deviating considerably from CIS benchmarks. You must perform corrective action immediately to ensure compliance.
Field | Description |
---|---|
Active Version | Active version of the configuration committed on the device. Click the View active config link to view the active configuration on the device. |
Other Versions | Backup versions of the configuration. Click a backup configuration link to view the configuration on the Config Device-Name-Date@Time page where, Data and Time are the date and time when the configuration on the device was backed up. Click the Compare link to compare one version of the backup configuration with any other version of the backup configuration on the Config diff - Device-Name page. |
Compliance | Displays the most recent compliance score recorded for the active configuration committed on the device. You get a warning if the compliance score of the active configuration is below a specified threshold. Click the Score link to view the compliance scan results and details about the rules that did not meet the criteria defined in the CIS benchmarks document on the Rule Results page (Trust > Compliance). |
Relevant Events | Lists the latest two alerts and alarms related to the failed compliance checks
and failure in committing configuration. Hover over View Details to view details of
that alert. Click the View Relevant Events link to view the list of all the events or anomalies present, on the device for the past seven days, on the Events for Device-Name page. |
Backup | Click the Backup button to take a backup of the active configuration. A confirmation message appears. Click OK to backup the active configuration. |