Ignore a Deviant Object or a Reason (Deviance)

In Tenable Identity Exposure, a deviant object refers to any object in the Active Directory (AD) that exhibits abnormal or risky behaviors, such as improper configurations or permissions, which could potentially expose security vulnerabilities. These objects are identified through Tenable's Indicators of Exposure (IoE), which identify deviations from best practices and security norms.

A reason, also known as a "deviance," is the specific attribute or factor that makes an object deviant. Multiple reasons may contribute to why the IoE flagged an object as deviant. For example, an object could be marked deviant due to incorrect file permissions, misconfigurations, or risky delegation, each of which represents a distinct "reason."

In summary:

  • Deviant Object: An AD object flagged for risky or abnormal behavior.

  • Reason/Deviance: The specific attribute or factor that causes the IoE to flag the object.

These reasons are critical to understanding the underlying security weaknesses associated with each deviant object.

See also