OpenSCAP

Commands

  • Install the required packages: yum install openscap-utils scap-security-guide
  • List profiles on RHEL7: oscap info /usr/share/xml/scap/ssg/content/ssg-rhel7-xccdf.xml
  • Perform a PCI scan: oscap xccdf eval --profile pci-dss --report /var/www/html/report.html --results /var/www/html/results.xml --cpe /usr/share/xml/scap/ssg/content/ssg-rhel7-cpe-dictionary.xml /usr/share/xml/scap/ssg/content/ssg-rhel7-xccdf.xml