Request an extension for a deferred exception rule before it reaches its deferred until due date. As a remediation owner, you’re no longer required to wait until the deferred due date to make this request.

Before you begin

Role required: sn_vul.exception_approver

About this task

You can also request an extension from the Vulnerability Response Workspaces. For more information, see Request an extension for a deferred vulnerable item in the Vulnerability Manager workspace.

Procedure

  1. Navigate to All > Vulnerability Response > Exception Rules.
  2. Select an approved exception rule.
  3. Select Request Extension.
  4. Fill in the fields on the form, as appropriate.
    Field Description
    Extend Until

    Select the date until when the exception rule must be extended.

    Reason Enter the reason for deferring the exception rule.
    Choices include:
    • Risk accepted
    • Awaiting maintenance window
    • Fix unavailable
    • Mitigating control in place
    • Other
    Additional information Enter any other relevant information.
  5. Select Request Approval.
    On approval of the request, the Deferred until, Reason and Additional information fields get updated on the exception rule and the associated remediation tasks and vulnerable items. An email is also triggered on submission of the request and subsequent action by the approver.
    Note:
    • The request goes through two levels of approval.
    • The Request Extension button is unavailable for remediation tasks that are created as part of an exception rule.
    • If a deferred exception rule is extended again, the extend deferral count increases in the backend.
    • Starting from v21.0 of Vulnerability Response, you can configure the time frames for approving false positives and exceptions, along with email notifications for both the approver and requester after a set number of days. When a request is raised, the vulnerable item changes to In-Review status and a state change record is created. If the approver doesn't respond within the configured time frame, the vulnerable item or remediation task reverts to Open status. The previous state is stored in the backup_state field. For more information, see Configure approval rules for Exception Management.