Compliance Utilities

The following programs implement compliance assessment and reporting:

  • Security Content Automation Protocol (SCAP)

  • SCAP tools (OpenSCAP)

  • Open Vulnerability and Assessment Language (OVAL)

  • eXtensible Configuration Checklist Description Format (XCCDF)

The compliance(8) and compliance-tailor(8) man pages describe how to run compliance in Oracle Solaris. For command usage, type compliance in a shell. The following is sample output:

$ compliance
No command specified
Usage:  compliance subcommand [argument]...
        compliance help [subcommand],
  where subcommand is one of assess, delete, get-options, get-policy, guide,
    list, report, roster, set-options, set-policy, store, or tailor