Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add public documentation for Infrastructure Package Catalog in CSM VM #26294

Open
wants to merge 3 commits into
base: master
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
Expand Up @@ -66,6 +66,14 @@

{{< img src="security/vulnerabilities/csm_remediate.png" alt="Details explorer of a specific vulnerability highlighting the ability to remediate and assign to team member" width="100%">}}

## Explore infrastructure packages

The [Infrastructure Packages Catalog][10] provides a real-time inventory of all packages across hosts, host images and container images deployed in your infrastructure, offering an interface to investigate your SBOMs, enriched with vulnerability and runtime context.

Check notice on line 71 in content/en/security/cloud_security_management/vulnerabilities/_index.md

View workflow job for this annotation

GitHub Actions / vale

Datadog.sentencelength

Suggestion: Try to keep your sentence length to 25 words or fewer.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
The [Infrastructure Packages Catalog][10] provides a real-time inventory of all packages across hosts, host images and container images deployed in your infrastructure, offering an interface to investigate your SBOMs, enriched with vulnerability and runtime context.
The [Infrastructure Packages Catalog][10] provides a real-time inventory of all packages across hosts, host images, and container images deployed in your infrastructure. It offers an interface you can use to investigate your SBOMs, enriched with vulnerability and runtime context.


Quickly assess the impact of a critical emerging vulnerability by searching for affected package versions and identifying all resources using it.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
Quickly assess the impact of a critical emerging vulnerability by searching for affected package versions and identifying all resources using it.
You can assess the impact of a critical emerging vulnerability by searching for affected package versions and identifying all of the resources that use it.


{{< img src="security/vulnerabilities/csm_package_explorer.png" alt="The inventory of packages deployed in the infrastructure with vulnerability context and pivot to resources using them" width="100%">}}

## Video walkthrough

The following video provides an overview of how to enable and use CSM Vulnerabilities:
Expand All @@ -79,6 +87,7 @@
[5]: /security/application_security/software_composition_analysis/
[6]: https://www.datadoghq.com/product/infrastructure-monitoring/
[9]: https://www.cisa.gov/known-exploited-vulnerabilities-catalog
[10]: https://app.datadoghq.com/security/catalog/libraries


## Further reading
Expand Down
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading