Generate compliance reports
Procedure
Step 1 | In the left pane, click Insights & Reports > Compliance Posture. The Compliance Posture page displays previously generated reports and allows you to create new compliance evaluations. | ||
Step 2 | Click Generate Report to begin defining the report. | ||
Step 3 | Enter a name and choose the device to evaluate.
| ||
Step 4 | Review the security zones. PCI DSS requires the Cardholder Data Environment (CDE) to be accurately defined. The CDE includes systems that store, process, or transmit cardholder data or sensitive authentication data, as well as environments with unrestricted connectivity to systems handling such data. An automated assessment identifies security zones that are likely to be part of the CDE based on the existing configuration. Review the selected security zones and update the selections based on your knowledge of the network before generating the report. | ||
Step 5 | In the Security Zones table, select the checkbox in the CDE column for each security zone that is part of the CDE. Clear the checkbox for any zone that is not part of the CDE.
| ||
Step 6 | Click Generate Report to begin the compliance evaluation process.
| ||
Step 7 | Find the generated report. Use the search field to search reports by name, user, or template. You can also click Filters to narrow the results. The Compliance Status column shows the number of checks that passed, need review, or failed. | ||
Step 8 | Click the report name to view the detailed compliance results.
The number next to each compliance check indicates how many findings were identified for that check. | ||
Step 9 | Click Download Report to export the report in JSON format for audit and offline review. | ||
Step 10 | Rerun a report. After making changes to address compliance findings, rerun the report to evaluate the updated configuration. |
You can view compliance findings from the Summary page. Navigate to Insights & Reports > Summary and click Operations to view compliance-related insights for the selected time range.