CTEM Settings
- Click 'Settings' > 'CTEM'
This section allows us to configure how scanning, compliance, patching, and agent lifecycle behave across the environment.
Select and set preferred time zone. This will appear in the date/time stamps and be used when setting up the Patch Scheduler options.

- Select the compliance frameworks to be included during Full or Compliance Scan operations.
- By default, only vulnerability scanning is enabled; therefore, Settings should be reviewed to configure Compliance Scan options according to the requirements.

- Set the default interval for how often your online Lightweight (LW) agent will scan
- You can also use an ‘EXCLUDE’ option by setting the ‘From Time’ and ‘To Time’ to exclude scans from happening during the set times.
Example: From Time - 8:00AM - To Time - 7:00PM
- No scans will run between the above times; After 7:00PM the system will check the 4-hour scan interval and initiate a scan ONLY if the machine is online.
- If these conditions are not met, the scan will not occur.
- In addition to the scheduled Lightweight scan interval, the agent also performs a full data and assessment scan every 6 hours. This scan collects and updates all the complete data.

This is where we can enable or disable the CTEM Patch Management. Enabling this feature does not automatically start patching assets unless we already defined a Patch Scheduler policy.

- Set Agent Deprecation days for agents that have been offline and not scanned for x number of days.
- If deprecated days are not provided, the system will automatically default to 90 days. (Minimum value is 3 days and Maximum can be 365days)


