Thursday, April 9, 2026

How to Set Up Vulnerability Scanning Service in OCI (Step-by-Step Guide)

 

Introduction

Securing your cloud infrastructure is critical, and Oracle Cloud Infrastructure (OCI) provides a built-in Vulnerability Scanning Service (VSS) to detect security risks in your compute instances. In this guide, we’ll walk through the complete setup—from scan recipes to remediation.


Prerequisites

  • A running OCI compute instance
  • Proper access to OCI Console
  • Required permissions to configure security services

Create scan recipes



Click on create scan recipe










Go to the compute instance and Enable the VSS agent



Create target. In this example, i am taking a single compute instance as an example.











Configure Cloud Guard and click on recipes












change it to root





click on Detector Rules tab and make sure the below ones are enabled




from the home page, click on configuration and then create new targets










Once the target is created, then move to scan reports






Click on vulnerability report




Go to cloud guard >Alerts>problems



The next step would be to remediate the problems based upon the individual scenarios one by one.

Conclusion

OCI’s Vulnerability Scanning Service combined with Cloud Guard provides a powerful security layer. Regular scans and proactive remediation ensure your infrastructure remains secure and compliant.

No comments:

Post a Comment