Configure Security Compliance Management

Use the Security Compliance Management installer powered by Puppet Bolt to configure Security Compliance Management settings.

The data retention period, fact update check interval, and assessor update check interval can be adjusted from the settings page in the console after installation.
  1. Configure Security Compliance Management on the target host using the command: bolt plan run complyadm::configure
  2. Set the mTLS certification if you want to use your own mTLS certificate. You can choose to use the automatically generated certificate.
  3. Set the TLS certificate chain, private key, and certificate revocation list (CRL) if you want to use your own TLS certificate. You can choose to use the automatically generated self-signed certificate.
  4. Set the assessor version. Setting the assessor version allows you to fix an assessor version so that the assessor remains in place when you upgrade. By default, the assessor is updated to the latest version available at the time of release.
  5. Set the log level.
Results
When the installer completes, Security Compliance Management is configured according to your inputs.