Video Screencast Help

CCS VM licensing

Created: 10 Dec 2012 • Updated: 14 Dec 2012 | 3 comments
Atif's picture
This issue has been solved. See solution.

Hi,

I need to confirm CCS Vulnerability Manager licensing. I know that CCS VM licensing are usually IP and scan based. I have a query what if a client has license of 1000 nodes and runs scan on 700 servers. After assessing report and information gathering, client deletes those IPs or Site (groups) and add new set of further 700-800 IPs for scanning. Would that work with the license of 1000 endpoints? or it would not by keeping record of scanned IP targets?

Regards.

Discussion Filed Under:

Comments 3 CommentsJump to latest comment

_Brian's picture

It should work fine, you just can't scan over your limit. As long as you're within limit, should be no issue.

Conventus Tyrrell's picture

Atif,

It should work from a technical standpoint, but it is definitely skirting the EULA. To protect yourself, I would recommend sending them an e-mail recommending they purchase the license required to scan all of their IPs. We used to have similar issues with Bindview licensing where we could get around license limitations by scoping just under the license count and I always advised against it. In the end, no company wants the stigma of violating license terms.

Chris Tyrrell

Compliance Practice Lead

Conventus Corp.

ctyrrell@conventus-sei.com

SOLUTION
Atif's picture

Thanks Tyrrell,

I have already conveyed the same to client that this is ethically wrong and against EULA. Thanks for confirming the same.