Skip to main content

Vendor - Managing and Monitoring Domains

Domains dashboard to list all vendor-associated domains, showing their security ratings, scan dates, and other important details.

Updated over a month ago

Overview of the Domains Dashboard

  • The Domains tab provides a comprehensive list of all domains and subdomains associated with a specific vendor.

  • This dashboard helps you understand the vendor's full digital footprint, which is a critical part of assessing their attack surface.

  1. Key Features of the Domains Table:

    • Domain: This column lists all the domains and subdomains identified for the vendor. A "Primary Domain" label helps you quickly identify the main domain.

    • Status: The status indicates whether the domain is "Active" or "Inactive." This helps you focus on the domains that are currently in use.

    • Score: Each domain has its own security score, providing a granular view of the security posture of different parts of the vendor's infrastructure.

    • Scanned On: The date when the domain was last scanned. This helps you track the recency of the security assessment.

  2. Using the Dashboard:

    • Identify Risks: Use the "Score" and "Status" columns to quickly identify domains that have a low security rating or are inactive but may still pose a risk.

    • Filter: Use the filter options to view only "Active" or "Inactive" domains, allowing you to focus on specific areas.

    • Drill Down: Click on any domain to get a more detailed view of its risks and associated IP addresses.


Accessing Domain Details

  • From the Domains dashboard, click on any specific domain to open the detailed view panel.

  • This panel provides all the information you need to understand the security posture of that particular domain.

  1. Domain Details Panel:

    • Domain Name: The name of the domain at the top of the panel.

    • Rescan: The "Rescan" button allows you to manually trigger a new scan for the domain if needed.

    • Score: The specific security score for this domain.

    • Last Scanned & First Scanned: These dates provide a historical context for the domain's assessment.

    • Labels: Labels (e.g., "Business Data," "Network Access") indicate the type of data or function associated with the domain.

    • IP Addresses: This section lists all the IP addresses that the domain resolves to. This is crucial for network security and firewall management.

  2. Risks Section:

    • The "Risks" section lists all the security findings associated with this domain.

    • Finding: A concise description of the security issue (e.g., "Revoked certificate in use," "DMARC policy is private").

    • Request Remediation: The "Request remediation" button allows you to easily communicate these findings to the vendor, streamlining your risk management process.

  3. Using This View:

    • This detailed view is essential for pinpointing specific security issues on a domain level.

    • You can use the "Risks" section to provide vendors with actionable steps for remediation.

    • The IP Addresses list can be used for your own internal security and network configuration needs.

Did this answer your question?