cisagov / crossfeed

External monitoring for organization assets
https://docs.crossfeed.cyber.dhs.gov
Creative Commons Zero v1.0 Universal
364 stars 54 forks source link

Please update API and documentation to suppress SCHEDULING, SCAN and SCAN TASK functionality. #2486

Open dmfezzareed opened 7 months ago

dmfezzareed commented 7 months ago

💡 Summary

XFD will no longer support partner on demand vulnerability scanning. https://github.com/cisagov/crossfeed/issues/2253 confirmed the function has already been suppressed in the UI for Standard and GlobalView user profiles.

Please update the API and documentation to suppress SCAN and SCAN TASKS functionality for Standard and GlobalView user profiles (and any new profiles that exist that are not GlobalAdmin).

https://docs.crossfeed.cyber.dhs.gov/api-reference/ https://docs.crossfeed.cyber.dhs.gov/dev/worker/#scheduling https://docs.crossfeed.cyber.dhs.gov/dev/worker/#scantask

image

Motivation and context

XFD is data aggregator. A data aggregator is an organization that collects data from one or more sources, provides some value-added processing, and repackages the result in a usable form.   I am specifically requesting suppression (via commenting) vs deletion so that if there is a partner demand to restore the functionality, we can do so with very little effort.

dmfezzareed commented 7 months ago

cc @schmelz21 @rapidray12 @stewartl97