SKNS
v2.0
Skans Docs/How-tos/Day-to-day console (tickets)
How-tos

Day-to-day console (tickets)

Skans adapts the home layout from your role permissions (Technician / Operator and similar). You should not need to pick a “mode.” This page is the short path for day-to-day tickets.

Tip

One ticket → one screen → one primary button → one clear outcome.
If you need more, type the page name in the command bar or open All views.

Home (ticket tiles) #

For roles that get the ticket-style home, home shows:

Tile Use for
Needs attention Open problems — Respond (isolate / open port) or open the device
Devices Find a camera or host by name / IP / MAC — Isolate / Open port on the device
Service / replace Day-2 swap: find → diagnose → replace hardware → re-certify
Fixes CVE findings — Attempt fix when the host has a Skans agent
Status Is the appliance healthy? Green / yellow / red

If you prefer the dense briefing, Account menu → Show full home briefing. Reset home layout returns to the default for your role.

Isolate a camera (or other agentless device) #

  1. Open Devices (or search the device name).
  2. Open the device.
  3. On the Act strip (or Network on this port), click Isolate → read the confirm dialog → confirm.
  4. When the job is done, click Open port to restore access.
Warning

Only isolate on the correct access port (ticket host). Do not isolate domain controllers, uplinks, or agent hosts.

Respond on Needs attention does the same isolate/open actions for a case tied to that device.

Attempt fix (Windows / Linux agent) #

  1. Open Fixes.
  2. Find the host/CVE.
  3. Attempt fix → confirm → the console queues a fix for when the host checks in.
  4. Nothing runs automatically. Expand the row for job results when available.

If Attempt fix is unavailable: the host has no enrolled agent. For agentless gear, use Isolate on the switch port instead.

Status #

Status answers “is the appliance OK?” — console and monitoring services first, then open problems. Use Full system only if L2 asks you to.

What you can usually skip on-site #

  • Detection pack versions and signing details
  • MITRE ATT&CK / charts on Vulnerabilities
  • Alerting rule editing, compliance evidence, network hub tabs
  • CLI verbs (those are for elevated roles / lab)