+ All Categories
Home > Documents > OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards...

OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards...

Date post: 21-Sep-2020
Category:
Upload: others
View: 14 times
Download: 0 times
Share this document with a friend
30
OpenSCAP Šimon Lukašík
Transcript
Page 1: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

OpenSCAP

Šimon Lukašík

Page 2: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

Agenda

● Compliance Audit

● Why we are doing it

● What is SCAP

● OpenSCAP ecosystem

● Future challenges

Page 4: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

Compliance Audit

● Proactive security

● Security Policy

● Why?– Military (stig)

– Government regulations (cc, usgcb)

– FISMA Act.

– ISO/EIC 27000 standard series

– Card industry (pci dss)

Page 6: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

What is SCAP

● Group of many standards● Automated compliance checking● Governed by NIST

– http://scap.nist.gov/

– Industry standard

● Current version: 1.2

Page 7: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

SCAP Components

Page 8: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

XCCDF

Checklist

CVECCE CPEEnumeration

OVAL SCEOCIL

Assessment Language

SCAP 1.1 Document Formats

SCAP 1.2 Document Formats

SCAP Component Standards

OVAL Definitions

Shell Scripts

XCCDF Benchmark

CVE Feed

OCIL Questionare

OVAL Results

CPE Dictionary

CCE List

use

Asset Reporting Format

Source DataStream

Page 9: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 10: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

Page 11: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

open-scap.org

Page 12: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 13: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

github.com/OpenSCAP/scap-security-guide

Page 14: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

demo

Page 15: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

github.com/OpenSCAP/scap-workbench

Page 16: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 17: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 18: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 19: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

spacewalk.redhat.com

Page 20: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 21: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 22: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 23: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

fedorahosted.org/oscap-anaconda-addon

Page 24: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 25: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results
Page 26: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

github.com/OpenSCAP/foreman_openscap

Page 27: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

Page 28: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

Scale SCAP

● vendor neutral and centralized SW inventory● vendor neutral CI compliance monitoring● vendor neutral threat life-cycle management● organization defined targeting ● better understanding of given system's purpose by auditing

infrastructure

Page 29: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

3/17/13

github.com/OpenSCAP/scaptimony

Page 30: OpenSCAP - Fedora · SCAP 1.1 Document Formats SCAP 1.2 Document Formats SCAP Component Standards OVAL Definitions Shell Scripts XCCDF Benchmark CVE Feed OCIL Questionare OVAL Results

1/21/15

Thanks!

isimluk.livejournal.comtwitter.com/openscap


Recommended