fleetdm / fleet

Open-source platform for IT, security, and infrastructure teams. (Linux, macOS, Chrome, Windows, cloud, data center)
https://fleetdm.com
Other
2.92k stars 405 forks source link

Filter hosts by vulnerability (CVE) and label #17340

Open Patagonia121 opened 6 months ago

Patagonia121 commented 6 months ago

Goal

User story
As a vulnerability management engineer on the Hosts page,
I want to be able to filter hosts by vulnerability (CVE) and by label
so that I can export a list of hosts that only includes hosts that need to be patched (grouped by a label).

Context

Changes

Product

Engineering

ℹ️  Please read this issue carefully and understand it. Pay special attention to UI wireframes, especially "dev notes".

QA

Risk assessment

Manual testing steps

  1. Step 1
  2. Step 2
  3. Step 3

Testing notes

Confirmation

  1. [ ] Engineer (@____): Added comment to user story confirming successful completion of QA.
  2. [ ] QA (@____): Added comment to user story confirming successful completion of QA.
noahtalerman commented 6 months ago

Hey @Patagonia121 heads up, this story was prioritized during feature fest.

Aiming to ship an improvement in the next 6 weeks.

noahtalerman commented 5 months ago

Hey @rachaelshaw, several weeks ago we met w/ a customer to get feedback on the Vulnerabilities page. Gong recording is here (internal).

From the video, I distilled that the ability to filter hosts (on Hosts page) by CVE and label would be valuable in this iteration.

I adjusted the user story to reflect this.

We already have the ability to sort by columns on the Vulnerabilities page (another piece of feedback).

noahtalerman commented 5 months ago

Hey @Patagonia121 heads up, I moved your original issue description here:

When viewing the vulnerable software page, it would be useful to have more flexible filters to allow users to view the data in different ways in the UI - this would lend an ability to filter/sort more columns for vulnerability management. The customer would like to see software that has the most CVE's in their environment

sharon-fdm commented 5 months ago

FE 2 BE 2