Vulnerability Scan Request Form

If you would like to request a vulnerability scan, please complete the web form below. ITS-SOS will help you identify vulnerabilities, misconfigurations, and backdoors in software and operating systems on your machine(s). There is no charge for this service.

You must be a network contact to request a scan. Requests made by non-network staff members will be verified by appropriate contacts prior to scanning. Scan results will only be returned to network contacts but the information may be shared with system administrators of affected machines, and with management in their units as appropriate. (Repeated, unauthorized scan requests (e.g., abusive activity) may result in referral to the Office of Student Conduct or the Office of Human Resources).

If the IP address(es) you are having scanned host Web application(s), please also request a web application scan.




* = required field

Contact's first name:
*

Contact's last name:
*

Contact's e-mail address:
*

Contact's phone number:
*

IP Address(es) or IP range of machine(s) you wish to have scanned:
*

Reason for scan request: *
  Routine vulnerability assessment
  Verification of security of new server, workstation or image build
  PCI verification
  Connectivity to AIS General Interface (GI) / Angel API
  Scan requested by Penn State Internal Auditors
  AD19
  Other (specify):

Have you allowed SOS access through your firewall (if applicable)? *
  No
  Yes

Would you like a non-invasive scan?
  Yes (Default setting - Denial-of-service and other potentially harmful tests will not be performed against your system.)
  No

Is there a timeframe you wish to have the scan run during? *
(Scans can be set to run at a specific date and time of your choosing or at any frequency (quarterly, monthly, etc). Please indicate any specific time or date requests in the comments field below. If appropriate, also use the comments field to indicate a re-occurring scan and its associated frequency. SOS will attempt to scan during the time frame requested, barring other higher priority security incidents.)

  Business hours
  Non-Business
  Anytime (ASAP)
  Anytime (at SOS leisure)

Would you like SOS to call before beginning the scan?
  Yes
  No

After the scan, would you like to receive both the raw results report and the SOS summary report?
  Yes
  No (only the raw results report)

Additional comments, requests and/or operating systems in use:




(Penn State authentication required).