Vulnerable System Drivers - OS Test

System drivers are essential for enabling communication between the operating system and hardware devices (like printers, graphics cards, or network adapters). A system driver is vulnerable when a driver software component of a computer system contains security flaws or weaknesses that can be exploited by malicious actors. If these drivers have vulnerabilities, they may provide an entry point for attackers to gain unauthorized access, escalate privileges, or cause other harmful effects. For this reason, the Vulnerable System Drivers - OS test reports the count of system drivers that are vulnerable, thus helping the administrator to rapidly identify and efficiently troubleshoot the issues caused by vulnerable drivers.

Target of the test : An Amazon Cloud Desktop Group

Agent deploying the test : A remote agent

Outputs of the test : One set of results for the target desktop group that is being monitored.

Configurable parameters for the test
Parameter Description

Test Period

How often should the test be executed.

Host

The nick name of the Amazon Cloud Desktop Group component for which this test is to be configured.

Port

Refers to the port at which the specified host listens to. By default, this is NULL.

Inside View Using

To obtain the 'inside view' of performance of the desktops - i.e., to measure the internal performance of the cloud-based citrix virtual desktops - this test uses a light-weight eG VM Agent software deployed on each of the desktops. Accordingly, this parameter is by default set to eG VM Agent.

Report Powered OS

If this flag is set to Yes (which is the default setting), then the 'inside view' tests will report measures for even those desktops that do not have any users logged in currently. Such desktops will be identified by their name and not by the username_on_desktopname. On the other hand, if this flag is set to No, then this test will not report measures for those desktops to which no users are logged in currently.  

Report By User

This flag is set to Yes by default. The value of this flag cannot be changed. This implies that the cloud-based virtual desktops in environments will always be identified using the login name of the user. In other words, in cloud environments, this test will, by default, report measures for every username_on_desktopname.

Is Cloud VMs

This flag is set to Yes by default. The value of this flag cannot be changed. This implies that the cloud-based virtual desktops in environments will always be identified using the login name of the user. In other words, in cloud environments, this test will, by default, report measures for every username_on_desktopname.

DD Frequency

Refers to the frequency with which detailed diagnosis measures are to be generated for this test. For instance, if you set to 1:1, it means that detailed measures will be generated every time this test runs, and also every time the test detects a problem.

Detailed Diagnosis

To make diagnosis more efficient and accurate, the eG suite embeds an optional detailed diagnostic capability. With this capability, the eG agents can be configured to run detailed, more elaborate tests as and when specific problems are detected. To enable the detailed diagnosis capability of this test for a particular server, choose the On option. To disable the capability, click on the Off option.

The option to selectively enable/disable the detailed diagnosis capability will be available only if the following conditions are fulfilled:

  • The eG manager license should allow the detailed diagnosis capability

  • Both the normal and abnormal frequencies configured for the detailed diagnosis measures should not be 0.

Measurements made by the test
Measurement Description Measurement Unit Interpretation

Number of vulnerable drivers

Indicates the total number of drivers that are vulnerable to malicious actions.

Number

The detailed diagnosis of this measure reveals the list of the vulnerable drivers.