SCAP benchmark for Cisco router security configuration compliance
Title | SCAP benchmark for Cisco router security configuration compliance |
Publication Type | Conference Paper |
Year of Publication | 2016 |
Authors | Hlyne, C. N. N., Zavarsky, P., Butakov, S. |
Conference Name | 2015 10th International Conference for Internet Technology and Secured Transactions (ICITST) |
Date Published | February 2016 |
Publisher | IEEE |
ISBN Number | 978-1-9083-2052-0 |
Keywords | Automation, Benchmark testing, business data processing, Cisco router security configuration compliance, formal specification, information security management, NIST, Operating systems, OVAL, policy compliance evaluation, pubcrawl, SCAP benchmark, science of security, security, security automation, security compliance, security content automation protocol, security of data, vulnerability measurement, XCCDF |
Abstract | Information security management is time-consuming and error-prone. Apart from day-to-day operations, organizations need to comply with industrial regulations or government directives. Thus, organizations are looking for security tools to automate security management tasks and daily operations. Security Content Automation Protocol (SCAP) is a suite of specifications that help to automate security management tasks such as vulnerability measurement and policy compliance evaluation. SCAP benchmark provides detailed guidance on setting the security configuration of network devices, operating systems, and applications. Organizations can use SCAP benchmark to perform automated configuration compliance assessment on network devices, operating systems, and applications. This paper discusses SCAP benchmark components and the development of a SCAP benchmark for automating Cisco router security configuration compliance. |
URL | https://ieeexplore.ieee.org/document/7412104 |
DOI | 10.1109/ICITST.2015.7412104 |
Citation Key | hlyne_scap_2015 |
- OVAL
- XCCDF
- vulnerability measurement
- security of data
- security content automation protocol
- security compliance
- security automation
- security
- SCAP benchmark
- policy compliance evaluation
- Science of Security
- operating systems
- NIST
- information security management
- Formal Specification
- Cisco router security configuration compliance
- business data processing
- Benchmark testing
- automation
- pubcrawl