Risk Scan Engine Compatibility

Updated Sep 28, 2023

Arctic Wolf Risk Scan Engine (formerly Joval) has advanced remote-scanning capabilities and broad platform coverage, so you can scan virtually any device on the network, from any other Java-enabled device. This document describes the out-of-the-box support Risk Scan Engine offers for various databases, schema standards, platforms, and content.

Scan target platform support

Risk Scan Engine can scan the following platforms:

Java VM compatibility

Risk Scan Engine versions 6.5 and newer are compatible with any Java virtual machine version 11 and newer. Risk Scan Engine versions older than 6.5 are compatible with any Java virtual machine between version 1.6 and version 16.

Risk Scan Engine drivers

Risk Scan Engine comes with Oracle, jTDS, and PostgreSQL drivers installed.

To add IBM Db2 and MySQL support, download the desired drivers and copy them to the lib/ directory.

Database engine support

Risk Scan Engine supports SQL tests for these database engines, using the associated Java Database Connectivity (JDBC) drivers:

Engine Version JDBC Driver
DB2 ≥8.1 IBM
MSSQL Azure, 2005, 2008, 2008 R2, 2012, 2014, 2016, 2017, 2019 jTDS
MySQL ≥4.1 Connector/J
Oracle ≥9.0.1 Oracle
PostgreSQL ≥7.2 PostgreSQL
Sybase 10, 11, 12, 15, 16 jTDS

Standards support

Risk Scan Engine supports the following schema versions:

Content support

Risk Scan Engine can use content from many organizations. This section lists the compliance and vulnerability content sources you may wish to use.

Risk Scan Engine has wide adoption and robust schema support. One advantage to the SCAP family of specifications is that there is a significant amount of freely-available content that is written in compatible formats. A continuous monitoring solution that is SCAP-based can leverage these content sources and avoid having to dedicate a team to content creation and migration activities. Most available content addresses the security compliance and known-vulnerability detection use-cases.

Compliance content

These organizations set standards, guidelines, and benchmarks for security compliance that you may want to use with Risk Scan Engine.

Vulnerability content

These organizations host OVAL vulnerability content that you may want to use with Risk Scan Engine.

