OpenSCAP / openscap

NIST Certified SCAP 1.2 toolkit
https://www.open-scap.org/tools/openscap-base
GNU Lesser General Public License v2.1
1.35k stars 372 forks source link

OpenSCAP for database security assesment #2139

Closed hdby99 closed 2 months ago

hdby99 commented 2 months ago

I am looking to use OpenSCAP for database security assessments. Since SCAP contents are not available for databases, would I need to write custom SCAP content to achieve this? Any guidance on how to proceed would be greatly appreciated.

evgenyz commented 2 months ago

Most likely — yes, you would have to. I'd recommend looking at https://github.com/ComplianceAsCode/content project.