A topic, or topics, that I have paid not-enough attention to through my career.
openSCAP
In Fedora, everything is quite simple:
[root@cypher ~]# yum -y install openscap openscap-content openscap-perl openscap-python openscp-selinux openscap-utils
[root@cypher ~]# oscap xccdf eval --profile common --report /tmp/`hostname -s`-ssg-fedora-xccdf-report.html --results /tmp/`hostname -s`-ssg-fedora-xccdf-results.html --cpe /usr/share/xml/scap/ssg/fedora/ssg-fedora-cpe-dictionary.xml /usr/share/xml/scap/ssg/fedora/ssg-fedora-xccdf.xml
nmap?
Nessus
Snort
openSCAP
In Fedora, everything is quite simple:
[root@cypher ~]# yum -y install openscap openscap-content openscap-perl openscap-python openscp-selinux openscap-utils
[root@cypher ~]# oscap xccdf eval --profile common --report /tmp/`hostname -s`-ssg-fedora-xccdf-report.html --results /tmp/`hostname -s`-ssg-fedora-xccdf-results.html --cpe /usr/share/xml/scap/ssg/fedora/ssg-fedora-cpe-dictionary.xml /usr/share/xml/scap/ssg/fedora/ssg-fedora-xccdf.xml
git clone git://git.fedorahosted.org/git/scap-security-guide.git
cd scap-security-guide/RHEL/6 make cd output
mkdir -p /usr/share/xml/scap/ssg/RHEL6 cp *rhel6* /usr/share/xml/scap/ssg/RHEL6
nmap?
Nessus
Snort
Comments
Post a Comment