Content deleted Content added
→See also: Add SCAP |
m Bot: link syntax and minor changes |
||
Line 1:
'''Open Vulnerability and Assessment Language''' ('''OVAL''') is an international, information security, community standard to promote open and publicly available security content, and to standardize the transfer of this information across the entire spectrum of security tools and services. OVAL includes a language used to encode system details, and an assortment of content repositories held throughout the community. The language standardizes the three main steps of the assessment process:
# representing configuration information of systems for testing;
# analyzing the system for the presence of the specified machine state (vulnerability, configuration, patch state, etc.); and
# reporting the results of this assessment.
The repositories are collections of publicly available and open content that utilize the language.
Line 34:
*[[Common Vulnerabilities and Exposures|Common Vulnerability and Exposures]] (index of standardized names for vulnerabilities and other security issues)
*[[XCCDF]] - eXtensible Configuration Checklist Description Format
*[[
==External links==
|