Jun 2019
17 Mon
18 Tue
19 Wed
20 Thu
21 Fri 08:45 AM – 05:40 PM IST
22 Sat 09:00 AM – 05:30 PM IST
23 Sun
rahul bajaj
Systems left with unpatched vulnerabilities can have a number of consequences. Security compliance is a state where computer systems are scrutinized against certain defined security policy. OpenSCAP is one such security compliance ecosystem that provides multiple tools to assist administrators and auditors with assessment, measurement, and enforcement of security baselines.
Foreman provides OpenSCAP as a plugin that enables Foreman to receive automated vulnerability assessment and security compliance audits from Foreman hosts. You can upload SCAP compliance contents, create compliance policies out of them and further, these policies can be assigned to various hosts or hostgroups created through foreman.
OpenSCAP reports will help users find vulnerabilities on the hosts and also suggest remediation plan to fix those vulnerabilities. Foreman OpenSCAP plugin is made of 4 components viz., foreman_openscap, smart_proxy_openscap, foreman_scap_client and puppet-foreman_scap_client. These components together establish the Foreman and OpenSCAP integration.
Learning OpenSCAP:
Automate Compliance using Foreman:
Basic knowledge of Linux commands and a will to learn new things are a big plus!
Rahul is a Software Engineer at Red Hat. He is a Rubyist, open source enthusiast and upstream contributor. He contributes mostly to the Foreman project and is the co-maintainer of the Foreman Discovery plugin. Being a Red Hat Certified Architect, he takes interest in learning about containers, configuration management tools, and security. He loves to travel, code, talk and drink beer!
{{ gettext('Login to leave a comment') }}
{{ gettext('Post a comment…') }}{{ errorMsg }}
{{ gettext('No comments posted yet') }}