Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enterprise upgrade to 10.3 with database upgrade missing RRA questions #1643

Closed
dfcuderek opened this issue Jul 29, 2021 · 3 comments
Closed

Comments

@dfcuderek
Copy link

dfcuderek commented Jul 29, 2021

🐛 Bug Report

Upgrade CSET Enterprise 10.0 to Enterprise 10.3 and execute the CSETDatabaseUpgrade10.3. During testing, as expected the "Maturity" selection was now available in the "Asset Configuration" section and "Ransomware Readiness Assessment" was able to be selected within the "Maturity Models" section and revealed the "Ransomware Readiness Tutorial" was also available. However, when proceeding to the RRA Practices the following error message is displayed:

There are no applicable practices to display. Check the assessment's target maturity level

There is no Target Maturity Level found in Assessment Configuration or Assessment Information.

Also, another possible issue. If selecting ASET from Maturity Models and moving through sections, when moving into the "Inherent Risk Profile Summary" user is shown a message "Your session has expired, a connection error has occurred, or you are no longer authorized to access that assessment. Please log in again." and logged out of CSET.

To Reproduce

Upgrade CSET Enterprise 10.0 to Enterprise 10.3 and execute the CSETDatabaseUpgrade10.3 executable. I compared the Old 10.0 database with the 10.3 database and confirmed that I see new tables such as dbo.MATURITY_MODELS which contained model names and id's including RRA with an ID of 5 but could not find any reference to the RRA Maturity_Model_ID in any other tables.
More Details:
Assessment Configuration Add text information and select Maturity Model under Assessment Options
Assessment Configuration tested several different sectors and industries with the same result. Chose different relative expected effort time ranges,

Expected behavior

After the database upgrade to 10.3 there should be RRA Practice content.

Any helpful log output

I am not aware of any log to reference

@inlguy
Copy link
Collaborator

inlguy commented Aug 10, 2021

I posted the 10.3 binaries in the release. If you can run a diff between them and send me results that should help alot.

@dfcuderek
Copy link
Author

@inlguy I rebuilt the site only using the 10.3 binary and the 10.3 database you supplied and so far testing is successful. I will provide a final update and probably close this ticket. Thank you again for getting that DB to us.

@dfcuderek
Copy link
Author

Using a fresh build of the 10.3 Enterprise Binary and the 10.3 Enterprise Binary database supplied by @inlguy I am not seeing any further issues at this time with Enterprise. I will continue to test but am now moving 10.3 into production. Thank you @inlguy for your help.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants