OpenSCAP

来自开放百科 - 灰狐
(版本间的差异)
跳转到: 导航, 搜索
(以“OpenSCAP ==简介== OpenSCAP: Open Source Security Compliance(合规)Solution ==标准== ==功能== ==工具== *OpenSCAP Base *OpenSCAP Daemon *SCAP Workbenc...”为内容创建页面)
 
(缩略语)
第24行: 第24行:
 
*AI(Asset Identification)
 
*AI(Asset Identification)
 
*ARF(Asset Reporting Format)
 
*ARF(Asset Reporting Format)
*
+
*CCE(Common Configuration Enumeration)
*
+
*CCSS(Common Configuration Scoring System)
*
+
*CIS(Center for Internet Security)
*
+
*CPE(Common Platform Enumeration)
*
+
*CVE(Common Vulnerabilities and Exposures)
*
+
*CVSS(Common Vulnerability Scoring System)
*
+
*CWE(Common Weakness Enumeration)
*
+
*FIPS(Federal Information Processing Standards)
*
+
*[http://www.mitre.org/ MITRE]
 +
*NIST(National Institute of Standards and Technology)
 +
*NVD(National Vulnerability Database)
 +
*OCIL(Open Checklist Interactive Language)
 +
*OVAL(Open Vulnerability and Assessment Language)
 +
*PCI DSS(Payment Card Industry Data Security Standard)
 +
*SCE(Script Check Engine)
 +
*SDS(SCAP source data stream)
 +
*SACM(Security Automation and Continuous Monitorin)
 +
*SCAP(Security Content Automation Protocol)
 +
*SWID(Software identification)
 +
*USGCB(United States Government Configuration Baseline)
 +
*XCCDF(eXtensible Configuration Checklist Description Format)
  
 
==图集==
 
==图集==

2020年11月12日 (四) 14:21的版本

OpenSCAP

目录

简介

OpenSCAP: Open Source Security Compliance(合规)Solution

标准

功能

工具

  • OpenSCAP Base
  • OpenSCAP Daemon
  • SCAP Workbench
  • SCAPTimony
  • OSCAP Anaconda Add-on
  • Systems Management
  • Atomic Scan

指南

项目

缩略语

  • AI(Asset Identification)
  • ARF(Asset Reporting Format)
  • CCE(Common Configuration Enumeration)
  • CCSS(Common Configuration Scoring System)
  • CIS(Center for Internet Security)
  • CPE(Common Platform Enumeration)
  • CVE(Common Vulnerabilities and Exposures)
  • CVSS(Common Vulnerability Scoring System)
  • CWE(Common Weakness Enumeration)
  • FIPS(Federal Information Processing Standards)
  • MITRE
  • NIST(National Institute of Standards and Technology)
  • NVD(National Vulnerability Database)
  • OCIL(Open Checklist Interactive Language)
  • OVAL(Open Vulnerability and Assessment Language)
  • PCI DSS(Payment Card Industry Data Security Standard)
  • SCE(Script Check Engine)
  • SDS(SCAP source data stream)
  • SACM(Security Automation and Continuous Monitorin)
  • SCAP(Security Content Automation Protocol)
  • SWID(Software identification)
  • USGCB(United States Government Configuration Baseline)
  • XCCDF(eXtensible Configuration Checklist Description Format)

图集

链接

分享您的观点
个人工具
名字空间

变换
操作
导航
工具箱