OpenSCAP / website

Tracker for new OpenSCAP portal
2 stars 1 forks source link

Tutorial: Use Red Hat Satellite for vulnerability scan #139

Open isimluk opened 8 years ago

isimluk commented 8 years ago

There has been a roadblock for this use-case (No CVE DataStream published, only OVAL available). This is no longer true.

DataStream are published on URLs like http://www.redhat.com/security/data/metrics/com.redhat.rhsa-RHEL7.ds.xml

Tutorial text should help the users to (1) Download DataStream for each RHEL version (2) Push this to Satellite 6.1+ as scap_content (3) Create a policy on Satellite 6.1+ interface using that scap_content (4) Show how the report looks like.

Till the text is written, users are following the advice at http://isimluk.livejournal.com/5655.html We may want to update that text with the links to the new tutorial.

isimluk commented 8 years ago

The link is added on https://www.redhat.com/security/data/metrics/, location for datastream files is https://www.redhat.com/security/data/metrics/ds/

matejak commented 6 years ago

This good idea is still valid.