todays product advirories implemented
This commit is contained in:
@@ -0,0 +1,26 @@
|
||||
# Concelier Kaspersky ICS-CERT Connector - Operations Runbook
|
||||
|
||||
_Last updated: 2026-01-16_
|
||||
|
||||
## 1. Overview
|
||||
The Kaspersky ICS-CERT connector ingests ICS/SCADA advisories and maps them to canonical IDs.
|
||||
|
||||
## 2. Authentication
|
||||
- No authentication required for public advisories unless a mirror enforces access controls.
|
||||
|
||||
## 3. Configuration (`concelier.yaml`)
|
||||
```yaml
|
||||
concelier:
|
||||
sources:
|
||||
kaspersky-ics:
|
||||
baseUri: "<kaspersky-ics-feed-base>"
|
||||
maxDocumentsPerFetch: 20
|
||||
fetchTimeout: "00:00:45"
|
||||
requestDelay: "00:00:00"
|
||||
```
|
||||
|
||||
## 4. Offline and air-gapped deployments
|
||||
- Mirror advisories into the Offline Kit and repoint `baseUri` to the mirror.
|
||||
|
||||
## 5. Common failure modes
|
||||
- Feed availability gaps for legacy advisories.
|
||||
Reference in New Issue
Block a user