40 likes | 175 Views
C 3 S Idea. 诸葛建伟 2010-12. C 3 S Idea. C 3 S: C ERNET C ommunity C loud for S ecurity Bones: Community Cloud Body: SCAP(Security Content Automation Protocol) Security Audit Security Harden Flood Security Content Data API Security Operation API. SCAP. System Security
E N D
C3S Idea 诸葛建伟 2010-12
C3S Idea • C3S: CERNET Community Cloud for Security • Bones: Community Cloud • Body: SCAP(Security Content Automation Protocol) • Security Audit • Security Harden • Flood • Security Content Data API • Security Operation API
SCAP • System Security • Desktop: SCAP-FDCC • Server: SCAP-FSCC • Network Security - SCAP-FNCC? • Network Protocol Security • IP Spoofing • ARP Spoofing • MAC Spoofing • TCP Session Hijacking • …… • Network Device Security Configuration • Routers, Switches, APs, …
SCAP Scanner • SCAP-enabled Scanners • Nessus System Center/Pro Feed • For Windows • Via SMB (needs credentials configured at Scanners) • For Linux ? • Via SSH? SNMP? • OpenSCAP • Open Source Project • For Windows? Not supported. • For Linux, supported • Need Local Root Access? Yes