当前位置:网站首页>多云安全合规扫描平台之RiskScanner
多云安全合规扫描平台之RiskScanner
2022-06-11 14:18:00 【华为云】
简介
RiskScanner 是开源的多云安全合规扫描平台,基于 Cloud Custodian 和 Nuclei 引擎,实现对主流公(私)有云资源的安全合规扫描和漏洞扫描。
RiskScanner 遵循 GPL v2 开源协议,使用 SpringBoot/Vue 进行开发,界面美观、用户体验好。RiskScanner支持的公有云包括阿里云、腾讯云、华为云、Amazon Web Services、Microsoft Azure、Google Cloud,支持的私有云包括 OpenStack、VMware vSphere。
功能
- 等保 2.0 预检:符合等保 2.0 规范,覆盖安全审计、访问控制、入侵防范、网络架构和管理中心等各项检查;
- CIS 合规检查:符合 CIS 规范,检查和实时监控在云上的资源是否符合 CIS 要求;
- 漏洞扫描:基于漏洞规则库,通过扫描等手段对指定的网络设备及应用服务的安全脆弱性进行检测;
- 最佳实践建议:制定合规管控基线,为企业级用户提供最佳实践建议,持续提升合规水平;
安装部署
$ curl -sSL https://github.com/riskscanner/riskscanner/releases/latest/download/quick_start.sh | sh安装详细信息
1. 检查配置文件配置文件位置: /opt/riskscanner/config/opt/riskscanner/config/config.txt [ √ ]完成2. 备份配置文件正在备份 /opt/riskscanner/config/backup/config.txt.2022-06-09_11-04-35完成>>> 安装配置 Docker1. 安装 Docker开始下载 Docker 程序 ...开始下载 Docker Compose 程序 ...完成2. 配置 Docker是否需要 Docker 存储目录, 默认将使用目录 /var/lib/docker? (y/n) (默认为 n): 完成3. 启动 DockerCreated symlink from /etc/systemd/system/multi-user.target.wants/docker.service to /etc/systemd/system/docker.service.完成>>> 安装配置 RiskScanner1. 配置持久化目录是否需要自定义持久化存储, 默认将使用目录 /opt/riskscanner? (y/n) (默认为 n): 完成2. 配置 MySQL是否使用外部 MySQL? (y/n) (默认为 n): 完成3. 配置对外端口是否需要配置 RiskScanner 对外访问端口? (y/n) (默认为 n): 完成>>> 安装完成了1. 可以使用如下命令启动, 然后访问cd /opt/riskscanner-installer-v1.6.1./rsctl.sh start2. 其它一些管理命令./rsctl.sh stop./rsctl.sh restart./rsctl.sh backup./rsctl.sh upgrade更多还有一些命令, 你可以 ./rsctl.sh --help 来了解3. Web 访问http://172.16.16.30:80默认用户: admin 默认密码: riskscanner4. 更多信息我们的官网: https://www.riskscanner.io/我们的文档: https://docs.riskscanner.io/
测试使用
添加云账号

开始扫描

查看扫描结构


扫描结果

参考链接
边栏推荐
- 2022-2028 global and Chinese near field scanning optical microscope (NSOM) market status and future development trend
- Live800:智能客服提升客户体验的几种方式
- Current situation and future development trend of metal organic chemical vapor deposition (MOCVD) market in the world and China from 2022 to 2028
- Raspberry pie obtains the function of network installation system without the help of other devices
- Repository Manager之Nexus
- In depth research and analysis report on global and Chinese sanitary safety product market
- IC fresh Chinese cabbage price of 400000 yuan! Experienced experts who have worked for many years guide you how to choose an offer!
- How to manually package your own projects
- Easyexcel configuration and Application
- 树莓派获得网络安装系统功能,无需借助其他设备
猜你喜欢

非常值得学习的调度开源库推荐

Distributed file system and enterprise application -- elk enterprise log analysis system

Xiaomi 9-wire brush ROM

Raspberry pie obtains the function of network installation system without the help of other devices

Sum of two leetcode numbers

111. minimum depth of binary tree

Live800: several ways for intelligent customer service to improve customer experience

大道至简 | 设计 ViT 到底怎么配置Self-Attention才是最合理的?

mysql创建表出错1067 - Invalid default value for ‘update_time‘
![[public class preview]: mxplayer Ott audio and video transcoding practice and optimization](/img/d8/a367c26b51d9dbaf53bf4fe2a13917.png)
[public class preview]: mxplayer Ott audio and video transcoding practice and optimization
随机推荐
Check box select all or deselect all
Methods and benefits of creating indexes for MySQL databases
树莓派知识大扫盲
HR doesn't want to read such a PDF technical resume at all. How can it be in the hands of the interviewer?
大道至簡 | 設計 ViT 到底怎麼配置Self-Attention才是最合理的?
Installation and use of Anaconda
Two small things, feel the gap with the great God
基于Qt开发实现的任务管理器
解决循环依赖BUG。Relying upon circular references is discouraged and they are prohibited by default.
gensim.models word2vec 参数
How to quickly make the title and ending with one click?
2022年全国最新消防设施操作员(初级消防设施操作员)题库及答案
Leetcode 1968. 构造元素不等于两相邻元素平均值的数组(可以,终于解决)
My struggle: my years in foreign enterprises (II)
The global mobile phone market is declining, and even apple does not expect too much of the iphone14
Single table query of SQL data query
My struggle: my years in foreign enterprises (1)
mysql创建表出错1067 - Invalid default value for ‘update_time‘
02 Tekton Pipeline
Powerful full text search tool anytxt searcher