期刊文献+

引入SCAP标准提高系统配置安全 被引量:4

The Introduction of SCAP Standard to Improve the Safety System Configuration
下载PDF
导出
摘要 随着计算机通信技术的飞速发展,由系统配置而导致的安全问题越来越多,安全内容自动化协议(SCAP)为系统配置的标准化以及对系统配置的脆弱性评估提供了一种统一的方法。越来越多的厂商、组织与社团已加入到SCAP的研究与发展中,也推动了SCAP成为真正意义的全球标准。 With the rapid development of computer communication technology,the increasing security issues are caused by system configuration,and the SCAP protocol provides a unified approach for the standardization of system configuration and the vulnerability assessment of system configuration.More and more companies,organizations and communities have added to the research and development of SCAP,and also contribute it to a truly global standard.
作者 张力
机构地区 Atsec
出处 《信息安全与技术》 2010年第10期22-26,共5页
关键词 SCAP OVAL CPE CVE CCE CVSS SCAP OVAL CPE CVE CCE CVSS
  • 相关文献

参考文献10

  • 1SCAP Homepage.http://scap.nist.gov .
  • 2.The Extensible Configuration Checklist Description Format (XCCDF)Version1.1.4[].https://datatrackerietforg/doc/draft-waltermire-scap-xccdf/.
  • 3.Naming Conventions for Vulnerabilities and Configurations[].https://datatrackerietforg/doc/draft-landfield-scap-naming/.
  • 4Common Configuration Enumeration (CCE). http://cce.mitre.org/ .
  • 5Common Platform Enumeration (CPE). http://cpe.mitre.org/ .
  • 6Common Vulnerabilities and Exposures (CVE). http://cve.mitre.org/ .
  • 7Common Vulnerability Scoring System (CVSS). http://www.first.org/cvss/ .
  • 8National Voluntary Laboratory Accreditation Program (NVLAP). http://ts.nist.gov/standards/accreditation/index.cfm .
  • 9.SCAP Validated Tools[]..
  • 10National Checklist Program. http://checklists.nist.gov .

同被引文献27

引证文献4

二级引证文献13

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部