Please use this identifier to cite or link to this item: http://hdl.handle.net/10609/95486
Title: Security checklists amb SCAP
Author: Dantí Espinasa, Francesc Xavier
Director: Garcia-Font, Victor  
Tutor: Canto Rodrigo, Pau del
Abstract: This work consists in the study of the SCAP framework and how Security Checklists are created using it. We will see how SCAP defines a language so that all systems related to computer security can be integrated: how to enumerate software components, vulnerabilities, patches, configuration settings, and so on. We will see how XCCDF, a declarative language, can be used to create SSG (SCAP Security Checklists) that will be reusable between different systems and how you can define checks, adjust them to make them customized to the regulations of each security policy and how can be used to define actions to solve small system configuration errors. We will see an example of how to apply an evaluation in real systems and how the actions of fix or remediation solve most of the problems detected. We can see what can be solved and what not wih this automated processes.
Keywords: baselines
SCAP
security guides
SGG
checklist
customization
Document type: info:eu-repo/semantics/masterThesis
Issue Date: 4-Jun-2019
Publication license: http://creativecommons.org/licenses/by-nc-nd/3.0/es/  
Appears in Collections:Trabajos finales de carrera, trabajos de investigación, etc.

Files in This Item:
File Description SizeFormat 
fdanti79TFM0619memoria.pdfMemoria del TFM1,14 MBAdobe PDFThumbnail
View/Open