CN109743195A - A kind of check method and device of security baseline - Google Patents
A kind of check method and device of security baseline Download PDFInfo
- Publication number
- CN109743195A CN109743195A CN201811511445.0A CN201811511445A CN109743195A CN 109743195 A CN109743195 A CN 109743195A CN 201811511445 A CN201811511445 A CN 201811511445A CN 109743195 A CN109743195 A CN 109743195A
- Authority
- CN
- China
- Prior art keywords
- security baseline
- check item
- verification
- template
- security
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Landscapes
- Debugging And Monitoring (AREA)
Abstract
The embodiment of the present invention provides the check method and device of a kind of security baseline, is related to Host Security technical field, can efficiently verify the security baseline of any verification object in any network environment.This method comprises: receiving the verification sign on that user terminal is sent, verifies in sign on and include the type to verification object;Target corresponding with the type to verification object is obtained from default template library verifies template;It includes at least one security baseline check item that target, which verifies template,;Template generation, which is verified, according to target verifies script;It is remotely connect using terminal emulator with to verification object foundation;Script is verified using the script function operation of terminal emulator, the configuration parameter of the security baseline check item to verification object is obtained, to generate the security baseline configuration file to verification object;Judge whether the configuration parameter of the security baseline check item in security baseline configuration file meets default security baseline configuration standard, and judging result is exported.
Description
Technical field
The present invention relates to Host Security technical field more particularly to the check methods and device of a kind of security baseline.
Background technique
The extension of network size causes network element device parameter and strategy configuration more complicated, is easy to appear parameter mispairing or plan
Slightly loophole, causes equipment to network and run in spite of illness, increases the security threat of illegal invasion, information leakage, reduces the network operation
Reliability.So need often to verify the security baseline of network element device, and existing artificial verification scheme, work effect
Rate is lower, and objective consistency is poor, it is difficult to realize that security baseline verifies the normalization of work.
Summary of the invention
The embodiment of the present invention provides a kind of check method of security baseline, can any network environment efficiently to appoint
The security baseline of meaning verification object is verified.
In order to achieve the above objectives, the embodiment of the present invention adopts the following technical scheme that
In a first aspect, providing a kind of check method of security baseline, comprising:
The verification sign on that user terminal is sent is received, verifies in sign on and includes the type to verification object;
Target corresponding with the type to verification object is obtained from default template library verifies template;Target verifies template packet
Include at least one security baseline check item;
Template generation, which is verified, according to target verifies script;
It is remotely connect using terminal emulator with to verification object foundation;
Script is verified using the script function operation of terminal emulator, obtains the security baseline check item to verification object
Configuration parameter, to generate security baseline configuration file to verification object;
Judge whether the configuration parameter of the security baseline check item in security baseline configuration file meets default security baseline
Configuration standard, and judging result is exported.
Technical solution provided by the above embodiment is verified template according to the type and baseline to verification object first, is generated
For acquiring the verification script of the security baseline configuration to verification object, then built by terminal emulator and verification object
Script is verified using the script function operation of terminal emulation journey after vertical long-range connection, generates and saves the safe base to verification object
Line configuration file;Whether meet finally by the analytical judgment to security baseline configuration file to the baseline configuration of verification object pre-
The baseline configuration standard first set.Because terminal emulator and verification script can be completed under any network environment, and
And a large amount of manual work is not needed, therefore technical solution provided by the above embodiment can be applied under different network environments
Equipment safety baseline is verified, and operation maintenance personnel is efficiently assisted to search equipment defect present in security baseline configuration, whole for safety
Change and examine and decision-making foundation is provided, and further reduces later period safe O&M cost.
Second aspect provides a kind of check device of security baseline, comprising: communication module, template selection module, script are raw
At module, emulation module and analysis module;
Communication module is verified in sign on for receiving the verification sign on of user terminal transmission comprising wait verify
The type of object;
Template selection module, for being obtained and the received type pair to verification object of communication module from default template library
The target answered verifies template;It includes at least one security baseline check item that target, which verifies template,;
Script generation module, the target for being selected according to template selection module verify template generation and verify script;
Emulation module, for remotely being connect by communication module with to verification object foundation using terminal emulator;
Emulation module is also used to the verification foot generated using the script function Run Script generation module of terminal emulator
This, obtains the configuration parameter of the security baseline check item to verification object, to generate the security baseline configuration text to verification object
Part;
Analysis module, for judging that the security baseline check item in security baseline configuration file that emulation module generates is matched
It sets whether parameter meets default security baseline configuration standard, and is exported judging result by communication module.
The third aspect provides a kind of check device of security baseline, comprising: memory, processor, bus and communication connect
Mouthful;For storing computer executed instructions, processor is connect with memory by bus memory;When the verification of security baseline fills
When setting operation, processor executes the computer executed instructions of memory storage, so that the check device of security baseline executes such as the
On the one hand the check method of the security baseline provided.
Fourth aspect provides a kind of computer storage medium, which includes computer executed instructions, when
When computer executed instructions are run on computers, so that computer executes the verification side of the security baseline provided such as first aspect
Method.
The check method and device of security baseline provided in an embodiment of the present invention, this method comprises: receiving user terminal hair
The verification sign on sent is verified in sign on comprising the type to verification object;It is obtained from default template library and to core
The corresponding target of type for checking elephant verifies template;Template generation, which is verified, according to target verifies script;Utilize terminal emulator
It is remotely connect with to verification object foundation;Script is verified using the script function operation of terminal emulator, to generate wait verify
The security baseline configuration file of object;Judge whether the security baseline configuration parameter in security baseline configuration file meets default peace
Full baseline configuration standard, and judging result is exported.Technical solution provided in an embodiment of the present invention, first according to verification object
Type and baseline verify template, generate for acquire to verification object security baseline configuration verification script, then leading to
It crosses after terminal emulator establishes long-range connect with verification object and verifies script using the script function operation of terminal emulation journey, it is raw
At and save security baseline configuration file to verification object;Finally by the analytical judgment to security baseline configuration file to core
Whether the baseline configuration for checking elephant meets preset baseline configuration standard.Because of terminal emulator and verification script
To complete under any network environment, and a large amount of manual work is not needed, therefore technical solution provided by the above embodiment
The equipment safety baseline that can be applied under different network environments is verified, and operation maintenance personnel is efficiently assisted to search equipment in security baseline
Defect present in configuration provides decision-making foundation for safety rectification and examination, and further reduces later period safe O&M cost.
Detailed description of the invention
In order to more clearly explain the embodiment of the invention or the technical proposal in the existing technology, to embodiment or will show below
There is attached drawing needed in technical description to be briefly described, it should be apparent that, the accompanying drawings in the following description is only this
Some embodiments of invention for those of ordinary skill in the art without creative efforts, can be with
It obtains other drawings based on these drawings.
Fig. 1 is a kind of flow diagram of the check method of security baseline provided in an embodiment of the present invention;
Fig. 2 is the flow diagram of the check method of another security baseline provided in an embodiment of the present invention;
Fig. 3 is a kind of structural schematic diagram of the check device of security baseline provided in an embodiment of the present invention;
Fig. 4 is the structural schematic diagram of the check device of another security baseline provided in an embodiment of the present invention.
Specific embodiment
Following will be combined with the drawings in the embodiments of the present invention, and technical solution in the embodiment of the present invention carries out clear, complete
Site preparation description, it is clear that described embodiments are only a part of the embodiments of the present invention, instead of all the embodiments.It is based on
Embodiment in the present invention, it is obtained by those of ordinary skill in the art without making creative efforts every other
Embodiment shall fall within the protection scope of the present invention.
It should be noted that in the embodiment of the present invention, " illustrative " or " such as " etc. words make example, example for indicating
Card or explanation.Be described as in the embodiment of the present invention " illustrative " or " such as " any embodiment or design scheme do not answer
It is interpreted than other embodiments or design scheme more preferably or more advantage.Specifically, " illustrative " or " example are used
Such as " word is intended to that related notion is presented in specific ways.
It should also be noted that, in the embodiment of the present invention, " (English: of) ", " corresponding (English:
Corresponding, relevant) " it sometimes can be mixed with " corresponding (English: corresponding) ", it should be pointed out that
It is that, when not emphasizing its difference, meaning to be expressed is consistent.
For the ease of clearly describing the technical solution of the embodiment of the present invention, in an embodiment of the present invention, use " the
One ", the printed words such as " second " distinguish function and the essentially identical identical entry of effect or similar item, and those skilled in the art can
To understand that the printed words such as " first ", " second " are not to be defined to quantity and execution order.
The check method working efficiency of the existing security baseline for network element device is low, and objective consistency is poor, it is difficult to real
Existing baseline verifies the normalization of work.
In view of the above-mentioned problems, the embodiment of the present invention provides a kind of check method of security baseline shown in referring to Fig.1, comprising:
101, the verification sign on that user terminal is sent is received, is verified in sign on comprising the class to verification object
Type.
In the embodiment of the present invention, user terminal can refer to inspector by own terminal, also can refer to implement this
The human-computer interaction interface or device of the equipment of scheme.
Illustratively, the type of verification object can be (SuSE) Linux OS, router etc..
102, target corresponding with the type to verification object is obtained from default template library verify template.
Wherein, it includes at least one security baseline check item that target, which verifies template,.
The type in template library for each verification object is preset in practice all there are multiple verification templates, objectives
It verifies depending on the selection according to actual needs of template.
Specifically, it includes at least one security baseline check item and each security baseline check item that target, which verifies template,
Number;It further include itself corresponding regularization formula in each security baseline check item, for judging subsequent obtained safety
Whether the corresponding security baseline configuration parameter of baseline check item meets preset standard.
Optionally, because verifying template in practice can be arranged as desired by inspector, before 102 steps also
Include:
S1, the template modification instruction that user terminal is sent is received.
The template of the transmission of S2, foundation user terminal modifies instruction, to all verification templates stored in default template library
It modifies.
Wherein, modification includes any one of following: addition is edited and is deleted.
Specifically, user when adding self-defined template, needs to fill in the title for verifying template and selection template is included
Security baseline check item;User cannot modify the title for verifying template when editing self-defined template, only allow to modify and verify
The security baseline check item that template is included.When user has filled in submission, it is also necessary to check the content that user fills in, wrap
It includes: checking whether the customized title for verifying template repeats and whether customized verification template contains at least one safe base
Ray examination item.After inspection passes through, by the customized information preservation for verifying template into default template library.
103, template generation is verified according to target and verifies script.
Optionally, target verifies the number that template further includes each security baseline check item.
Illustratively, verifying script can be VBS (Microsoft Visual Basic ScriptEdition, Microsoft
Company's visual basic language-script version) script.
Optionally, referring to shown in Fig. 2,103 steps are specifically included:
1031, according to the number of security baseline check item from presetting database, corresponding security baseline check item is obtained
Acquisition.
1032, it is generated according to the number of the corresponding acquisition of security baseline check item and security baseline check item and verifies foot
This.
Illustratively, the VBS scripted code that by taking VBS script as an example above-mentioned 1031 and 1032 steps are related to are as follows: set pre_
Cmd=CreateObject (" Scripting.Dictionary ")
Pre_cmd.Add " CU_OS_Linux_B_5.3.1 ", " uid_min=` (egrep-v ... "
A Dictionary object pre_cmd is created first, then by the number of security baseline check item and corresponding
Acquisition is added in Dictionary object as a key-value pair, as shown in sample, " CU_OS_Linux_B_5.3.1 "
For the number of security baseline check item, " uid_min=` (egrep-v ... " it is corresponding acquisition.
104, it is remotely connect using terminal emulator with to verification object foundation.
Illustratively, terminal emulator can be SecureCRT, support remote terminal protocol Telnet, SSH
(SecureShell, safety shell protocol) and serial Serial agreement, can be by cable or Serial Port Line and to verification object
Establish long-range connection.
105, script is verified using the script function operation of terminal emulator, obtains and is examined to the security baseline of verification object
The configuration parameter of item is looked into, to generate the security baseline configuration file to verification object.
Optionally, referring to shown in Fig. 2,105 steps are specifically included:
1051, the configuration information for the verification object that user terminal is sent is received.
Illustratively, by taking SecureCRT runs VBS script as an example, when VBS script brings into operation, VBS script can
It can be in the form of popping up input frame, it is desirable that user fills in some configuration informations to verification object, this is depended on to verification object
Type;For example, user needs to fill in the MySQL installation road of verification object when verification object type is MySQL database
Diameter, the account of MySQL database and password, these information are during acquiring the baseline configuration of MySQL database must can not
Few;Here it can use crt.Dialog.Prompt () method of SecureCRT offer, code sample is as follows:
DatabaseUser=crt.Dialog.Prompt (" Please set ... ", " DatabaseUser ", " ",
False);
Wherein " Please set ... " is the message text for playing frame, and " DatabaseUser " is the title for playing frame, False table
Show not hide input text, user input after the completion of, the information preservation that VBS script inputs user into corresponding variable,
It is used in the acquisition of subsequent execution security baseline check item.
1052, instruction is modified according to the template of the transmission of user terminal, to all verification moulds stored in presetting database
Plate is modified.
Illustratively, by taking SecureCRT runs VBS script as an example, VBS script is by the number of each security baseline check item
It is stored in a Dictionary object with corresponding acquisition as a key-value pair.By traversing this
The acquisition of each security baseline check item is sent to verification object by Dictionary object, VBS script, before sending root
According to the type to verification object, it may be necessary to modify to acquisition, such as when verification object type is MySQL database
When, if order needs MySQL installation path using verification object, need user fills in 1051 steps before peace
Dress path is added in order, then the order of modification is sent to verification object.Sending order is provided using SecureCRT
Crt.Screen.Send method, code sample are as follows:
crt.Screen.Send cmds(i);Wherein cmds (i) is the order to be sent.
1053, the corresponding acquisition of security baseline check item verified in script is sent to using terminal emulator
To verification object, so as to return to security baseline check item pair according to the corresponding acquisition of security baseline check item to verification object
The configuration parameter answered.
1054, using terminal emulator that the number of security baseline check item and each security baseline check item is corresponding
Configuration parameter associated storage, to generate security baseline configuration file to verification object.
Illustratively, it by taking SecureCRT runs VBS script as an example, after having sent order, needs to receive to verification object root
According to the corresponding configuration parameter of security baseline check item that acquisition returns, the log of SecureCRT offer can use here
Function;SecureCRT can establish journal file for each long-range connection, for recording all interactions in long-range connection procedure
Information, including all response messages that all input information locally sent and distal end return, and SecureCRT is also provided
The method for switching journal function, can open or close journal function by code;Start to send baseline configuration inspection in VBS script
It looks into before the order of item, the journal function of SecureCRT is opened by code call crt.session.Log (true);?
During VBS script is run, after every order for having sent a baseline configuration check item, by the day for reading SecureCRT
Will file can obtain the corresponding configuration parameter of security baseline check item returned to verification object according to order, later will peace
The number of the complete corresponding configuration parameter of baseline check item and corresponding security baseline check item is saved in security baseline configuration file
In.The aforementioned 1051-1053 step of repetition is all sent up to the acquisition of all security baseline check items, is finally passed through again
The journal function of code call crt.session.Log (false) closing SecureCRT.
106, it is default to judge whether the corresponding configuration parameter of security baseline check item in security baseline configuration file meets
Security baseline configuration standard, and judging result is exported.
Optionally, 106 steps referring to shown in Fig. 2 specifically include:
1061, judge whether the corresponding configuration parameter of security baseline check item meets safe base in security baseline configuration file
The regular expression that ray examination item includes.
Illustratively, it is necessary first to according to the number of the security baseline check item stored in security baseline configuration file to institute
The corresponding configuration parameter of some security baseline check items is separated, and then carries out 1061 judgement one by one.
If the corresponding configuration parameter of security baseline check item meets security baseline check item packet in security baseline configuration file
The regular expression contained, then execute 1062;If the corresponding configuration parameter of security baseline check item is not in security baseline configuration file
Meet the regular expression that security baseline check item includes, then executes 1063.
1062, determine that the corresponding configuration parameter of security baseline check item meets default security baseline configuration standard.
1063, determine that the corresponding configuration parameter of security baseline check item does not meet default security baseline configuration standard.
1064, judging result is exported.
Illustratively, after the completion of the corresponding configuration parameter judgement of all security baseline check items in configuration file, will sentence
It is disconnected as a result, whether each i.e. corresponding configuration parameter of security baseline check item meets preset standard, show in table form
Come, the content that the every a line of table is shown includes the number of security baseline check item, the security baseline check item pair to verification object
The security baseline configuration parameter answered and the judging result for whether meeting preset standard.
The check method of security baseline provided in an embodiment of the present invention, this method comprises: receiving the core that user terminal is sent
Sign on is looked into, is verified in sign on comprising the type to verification object;It is obtained from default template library and to verification object
The corresponding target of type verify template;Template generation, which is verified, according to target verifies script;Using terminal emulator and to core
It checks as establishing long-range connection;Script is verified using the script function operation of terminal emulator, to generate to verification object
Security baseline configuration file;Judge whether the security baseline configuration parameter in security baseline configuration file meets default security baseline
Configuration standard, and judging result is exported.Technical solution provided in an embodiment of the present invention, first according to the type to verification object
Template is verified with baseline, the verification script for acquiring the security baseline configuration to verification object is generated, is then passing through terminal
Simulated program is run using the script function of terminal emulation journey after establishing long-range connect with verification object and verifies script, is generated and is protected
Deposit the security baseline configuration file to verification object;Finally by the analytical judgment to security baseline configuration file to verification object
Baseline configuration whether meet preset baseline configuration standard.Because terminal emulator and verification script can be in office
It is completed under meaning network environment, and does not need a large amount of manual work, therefore technical solution provided by the above embodiment can answer
It is verified for the equipment safety baseline under different network environments, normality efficiently assists operation maintenance personnel lookup equipment to match in security baseline
Defect present in setting provides decision-making foundation for safety rectification and examination, and further reduces later period safe O&M cost.
Referring to shown in Fig. 3, the embodiment of the present invention also provides a kind of check device 01 of security baseline, comprising: communication module
31, template selection module 32, script generation module 33, emulation module 34 and analysis module 35;
Communication module 31 is verified in sign on for receiving the verification sign on of user terminal transmission comprising to core
Check the type of elephant;
Template selection module 32, for being obtained and the received class to verification object of communication module 31 from default template library
The corresponding target of type verifies template;It includes at least one security baseline check item that target, which verifies template,;
Script generation module 33, the target for being selected according to template selection module 32 verify template generation and verify script;
Emulation module 34, for remotely being connected by communication module 31 with to verification object foundation using terminal emulator
It connects;
Emulation module 34 is also used to the core generated using the script function Run Script generation module 33 of terminal emulator
Script is looked into, the configuration parameter of the security baseline check item to verification object is obtained, is matched with generating to the security baseline of verification object
Set file;
Analysis module 35, the security baseline check item in security baseline configuration file for judging the generation of emulation module 34
Configuration parameter whether meet default security baseline configuration standard, and judging result is exported by communication module 31.
Optionally, target verifies the number that template further includes each security baseline check item;Script generation module 33 has
Body is used for:
The target selected according to template selection module 32 verifies the number of the security baseline check item in template from present count
According to the acquisition in library, obtaining corresponding security baseline check item;
It is generated according to the number of the corresponding acquisition of security baseline check item and security baseline check item and verifies script.
Optionally, emulation module 34 is specifically used for:
Using terminal emulator by communication module 31, the safety verified in script that script generation module 33 is generated
The corresponding acquisition of baseline check item is sent to verification object, so that corresponding according to security baseline check item to verification object
Acquisition the corresponding configuration parameter of security baseline check item is returned to by communication module 31;
Using terminal emulator by each corresponding configuration parameter of security baseline check item and script generation module 33
The number associated storage for verifying the security baseline check item in script of generation, to generate the security baseline configuration to verification object
File.
Optionally, analysis module 35 is specifically used for:
Judge that the corresponding configuration parameter of security baseline check item is in the security baseline configuration file of the generation of emulation module 34
The regular expression that the security baseline check item that the no target for meeting the selection of template selection module 32 is verified in template includes;
If satisfied, then determining that the corresponding configuration parameter of security baseline check item meets default security baseline configuration standard;
If not satisfied, then determining that the corresponding configuration parameter of security baseline check item does not meet default security baseline configuration mark
It is quasi-.
Optionally, pass through communication module 31 using terminal emulator in emulation module 34, the safety in script will be verified
The corresponding acquisition of baseline check item is sent to which before verification object, communication module 31 is also used to receive the hair of user terminal 02
The configuration information of the verification object sent;
The configuration information for the verification object that emulation module 34 is also used to be received according to communication module 31 examines security baseline
The corresponding acquisition of item is looked into be updated.
Optionally, the check device of the security baseline further includes template configuration module 36;
Communication module 31 is also used to receive the template modification that user terminal 02 is sent before receiving verification sign on and refers to
It enables;
The template modification of template configuration module 36, the transmission of the user terminal 02 for receiving according to communication module 31 refers to
It enables, modifies to all verification templates stored in default template library;
Modification includes any one of following: addition is edited and is deleted.
It should be noted that the user terminal in above-described embodiment can be the end separated with the check device of security baseline
End equipment is also possible to interface or sub-device on the check device of security baseline for interacting with user.
The check device of security baseline provided in an embodiment of the present invention, because the device includes: communication module, for receiving
Sign on is verified, is verified in sign on comprising the type to verification object;Template selection module is used for from default template library
It is middle to obtain target verification template corresponding with the received type to verification object of communication module;It includes at least that target, which verifies template,
One security baseline check item;Script generation module, the target for being selected according to template selection module verify template generation core
Look into script;Emulation module, for remotely being connect by communication module with to verification object foundation using terminal emulator;Emulation
Module is also used to the verification script generated using the script function Run Script generation module of terminal emulator, obtains wait verify
The configuration parameter of the security baseline check item of object, to generate the security baseline configuration file to verification object;Analysis module is used
It is default whether the configuration parameter of the security baseline check item in the security baseline configuration file for judging emulation module generation meets
Security baseline configuration standard, and exported judging result by communication module.So technical solution provided in an embodiment of the present invention,
Template can be verified according to the type and baseline to verification object first, generate and match for acquiring to the security baseline of verification object
Then the verification script set utilizes the foot of terminal emulation journey after establishing long-range connect with verification object by terminal emulator
Script is verified in the operation of this function, is generated and is saved the security baseline configuration file to verification object;Finally by security baseline
Whether the analytical judgment of configuration file meets preset baseline configuration standard to the baseline configuration of verification object.Because of terminal
Simulated program and verification script can be completed under any network environment, and not need a large amount of manual work, therefore on
It states the equipment safety baseline that the technical solution that embodiment provides can be applied under different network environments to verify, efficiently assists O&M
People finder's equipment defect present in security baseline configuration provides decision-making foundation for safety rectification and examination, and further
Reduction later period safe O&M cost.
Referring to shown in Fig. 4, the embodiment of the present invention also provides the check device of another kind security baseline, including memory 41,
Processor 42, bus 43 and communication interface 44;Memory 41 is for storing computer executed instructions, processor 42 and memory 41
It is connected by bus 43;When the operation of the check device of security baseline, processor 42 executes the computer that memory 41 stores and holds
Row instruction, so that the check device of security baseline executes the check method such as security baseline provided by the above embodiment.
In concrete implementation, as one embodiment, processor 42 (42-1 and 42-2) may include one or more
CPU, such as CPU0 and CPU1 shown in Fig. 4.And as one embodiment, the check device of security baseline may include multiple
Processor 42, such as processor 42-1 and processor 42-2 shown in Fig. 4.Each of these processors 42 CPU can be with
It is a single core processor (Single-CPU), is also possible to a multi-core processor (Multi-CPU).Here processor 42
It can refer to one or more equipment, circuit, and/or the processing core for handling data (such as computer program instructions).
Memory 41 can be read-only memory 41 (Read-Only Memory, ROM) or can store static information and refer to
The other kinds of static storage device enabled, random access memory (RandomAccess Memory, RAM) or can store
The other kinds of dynamic memory of information and instruction, is also possible to Electrically Erasable Programmable Read-Only Memory
(Electrically Erasable ProgrammableRead-Only Memory, EEPROM), CD-ROM (Compact
Disc Read-Only Memory, CD-ROM) or other optical disc storages, optical disc storage (including compression optical disc, laser disc, light
Dish, Digital Versatile Disc, Blu-ray Disc etc.), magnetic disk storage medium or other magnetic storage apparatus or can be used in carry or
Store have instruction or data structure form desired program code and can by any other medium of computer access, but
It is without being limited thereto.Memory 41, which can be, to be individually present, and is connected by communication bus 43 with processor 42.Memory 41 can also be with
It is integrated with processor 42.
In concrete implementation, memory 41, for storing the data in the application and executing the software program of the application
Corresponding computer executed instructions.Processor 42 can by running or executing the software program being stored in memory 41, with
And call the data being stored in memory 41, the various functions of the check device of security baseline.
Communication interface 44 is used for and other equipment or communication, such as control using the device of any transceiver one kind
System processed, wireless access network (Radio Access Network, RAN), WLAN (Wireless Local Area
Networks, WLAN) etc..Communication interface 44 may include that receiving unit realizes that receive capabilities and transmission unit realize transmission
Function.
It is total to can be industry standard architecture (Industry Standard Architecture, ISA) for bus 43
Line, external equipment interconnection (Peripheral Component Interconnect, PCI) bus or extension Industry Standard Architecture
Structure (Extended Industry Standard Architecture, EISA) bus etc..The bus 43 can be divided into address
Bus, data/address bus, control bus etc..Only to be indicated with a thick line in Fig. 4, it is not intended that only one convenient for indicating
Bus or a type of bus.
The embodiment of the present invention also provides a kind of computer storage medium, and computer storage medium includes that computer execution refers to
It enables, when computer executed instructions are run on computers, so that computer executes such as security baseline provided by the above embodiment
Check method.
The embodiment of the present invention also provides a kind of computer program, which can be loaded directly into memory, and
Containing software code, which is loaded into via computer and can be realized safe base provided by the above embodiment after executing
The check method of line.
Those skilled in the art are it will be appreciated that in said one or multiple examples, function described in the invention
It can be realized with hardware, software, firmware or their any combination.It when implemented in software, can be by these functions
Storage in computer-readable medium or as on computer-readable medium one or more instructions or code transmitted.
Computer-readable medium includes computer storage media and communication media, and wherein communication media includes convenient for from a place to another
Any medium of one place transmission computer program.Storage medium can be general or specialized computer can access it is any
Usable medium.
Through the above description of the embodiments, it is apparent to those skilled in the art that, for description
It is convenienct and succinct, only the example of the division of the above functional modules, in practical application, can according to need and will be upper
It states function distribution to be completed by different functional modules, i.e., the internal structure of device is divided into different functional modules, to complete
All or part of function described above.
In several embodiments provided herein, it should be understood that disclosed device and method can pass through it
Its mode is realized.For example, the apparatus embodiments described above are merely exemplary, for example, the module or unit
It divides, only a kind of logical function partition, there may be another division manner in actual implementation.Such as multiple units or components
It may be combined or can be integrated into another device, or some features can be ignored or not executed.Another point, it is shown or
The mutual coupling, direct-coupling or communication connection discussed can be through some interfaces, the indirect coupling of device or unit
It closes or communicates to connect, can be electrical property, mechanical or other forms.Unit can be or can also as illustrated by the separation member
Not to be physically separated, component shown as a unit can be a physical unit or multiple physical units, it can
It is in one place, or may be distributed over multiple and different places.Can select according to the actual needs part therein or
Person's whole unit achieves the purpose of the solution of this embodiment.
It, can also be in addition, the functional units in various embodiments of the present invention may be integrated into one processing unit
It is that each unit physically exists alone, can also be integrated in one unit with two or more units.Above-mentioned integrated list
Member both can take the form of hardware realization, can also realize in the form of software functional units.If integrated unit with
The form of SFU software functional unit is realized and when sold or used as an independent product, can store and storage Jie can be read at one
In matter.Based on this understanding, the portion that the technical solution of the embodiment of the present application substantially in other words contributes to the prior art
Divide or all or part of the technical solution can be embodied in the form of software products, which is stored in one
In storage medium, including some instructions are used so that an equipment (can be single-chip microcontroller, chip etc.) or processor
(processor) it performs all or part of the steps of the method described in the various embodiments of the present invention.And storage medium above-mentioned includes:
The various media that can store program code such as USB flash disk, mobile hard disk, ROM, RAM, magnetic or disk.
The above description is merely a specific embodiment, but scope of protection of the present invention is not limited thereto, any
In the technical scope disclosed by the present invention, any changes or substitutions that can be easily thought of by those familiar with the art, all answers
It is included within the scope of the present invention.Therefore, protection scope of the present invention should be subject to the protection scope in claims.
Claims (14)
1. a kind of check method of security baseline characterized by comprising
The verification sign on that user terminal is sent is received, it is described to verify in sign on comprising the type to verification object;
Target corresponding with the type to verification object is obtained from default template library verifies template;The target verifies mould
Plate includes at least one security baseline check item;
Template generation, which is verified, according to the target verifies script;
It is remotely connect with described to verification object foundation using terminal emulator;
The verification script is run using the script function of terminal emulator, the security baseline to verification object is obtained and examines
The configuration parameter of item is looked into, to generate the security baseline configuration file to verification object;
Judge whether the configuration parameter of the security baseline check item in the security baseline configuration file meets default security baseline
Configuration standard, and judging result is exported.
2. the check method of security baseline according to claim 1, which is characterized in that the target verifies template and further includes
The number of each security baseline check item;It is described to include: according to target verification template generation verification script
According to the number of the security baseline check item from presetting database, adopting for the corresponding security baseline check item is obtained
Collection order;
It is generated according to the number of the corresponding acquisition of the security baseline check item and the security baseline check item and verifies foot
This.
3. the check method of security baseline according to claim 2, which is characterized in that described using terminal emulator
Script function runs the verification script, obtains the configuration parameter of the security baseline check item to verification object, to generate
The security baseline configuration file to verification object includes:
The corresponding acquisition of the security baseline check item in the verification script is sent out using the terminal emulator
It send to described to verification object, so that described return to verification object according to the corresponding acquisition of the security baseline check item
The corresponding configuration parameter of the security baseline check item;
The number of the security baseline check item and each described described security baseline are examined using the terminal emulator
The corresponding configuration parameter associated storage of item is looked into, to generate the security baseline configuration file to verification object.
4. the check method of security baseline according to claim 1, which is characterized in that the judgement security baseline is matched
It sets the corresponding configuration parameter of security baseline check item in file and whether meets default security baseline configuration standard and include:
Judge whether the corresponding configuration parameter of security baseline check item described in the security baseline configuration file meets the peace
The regular expression that full baseline check item includes;
If satisfied, then determining that the corresponding configuration parameter of the security baseline check item meets default security baseline configuration standard;
If not satisfied, then determining that the corresponding configuration parameter of the security baseline check item does not meet default security baseline configuration mark
It is quasi-.
5. the check method of security baseline according to claim 3, which is characterized in that described to utilize the terminal emulation journey
Sequence by the corresponding acquisition of the security baseline check item in the verification script be sent to it is described to verification object before
Further include:
Receive the configuration information for the verification object that the user terminal is sent;
The corresponding acquisition of the security baseline check item is updated according to the configuration information of the verification object.
6. the check method of security baseline according to claim 1, which is characterized in that the reception verify sign on it
Before further include:
Receive the template modification instruction that the user terminal is sent;
The template of transmission according to user terminal modifies instruction, carries out to all verification templates stored in the default template library
Modification;
The modification includes any one of following: addition is edited and is deleted.
7. a kind of check device of security baseline characterized by comprising communication module, template selection module, script generate mould
Block, emulation module and analysis module;
The communication module, include for receiving the verification sign on of user terminal transmission, in the verifications sign on to
The type of verification object;
The template selection module, it is received described to verification object with the communication module for being obtained from default template library
The corresponding target of type verify template;It includes at least one security baseline check item that the target, which verifies template,;
The script generation module, the target for being selected according to the template selection module verify template generation and verify foot
This;
The emulation module, for being established remotely with described to verification object using terminal emulator by the communication module
Connection;
The emulation module is also used to run the institute that the script generation module generates using the script function of terminal emulator
Verification script is stated, the configuration parameter of the security baseline check item to verification object is obtained, it is described to verification object to generate
Security baseline configuration file;
The analysis module, the security baseline inspection in the security baseline configuration file for judging the emulation module generation
Whether the configuration parameter for looking into item meets default security baseline configuration standard, and is exported judging result by the communication module.
8. the check device of security baseline according to claim 7, which is characterized in that the target verifies template and further includes
The number of each security baseline check item;The script generation module is specifically used for:
According to the template selection module selection the target verify template in the security baseline check item number from
In the presetting database, the acquisition of the corresponding security baseline check item is obtained;
It is generated according to the number of the corresponding acquisition of the security baseline check item and the security baseline check item and verifies foot
This.
9. the check device of security baseline according to claim 8, which is characterized in that the emulation module is specifically used for:
Using the terminal emulator by the communication module, the verification script that the script generation module is generated
In the corresponding acquisition of the security baseline check item be sent to it is described to verification object so that described to verification object root
The security baseline check item is returned to by the communication module according to the corresponding acquisition of the security baseline check item to correspond to
Configuration parameter;
It will each corresponding configuration parameter of security baseline check item and the foot using the terminal emulator
The number associated storage for the security baseline check item in the verification script that this generation module generates, with generate it is described to
The security baseline configuration file of verification object.
10. the check device of security baseline according to claim 7, which is characterized in that the analysis module is specifically used for:
Judge the corresponding configuration of security baseline check item described in the security baseline configuration file of the emulation module generation
The security baseline check item that the target whether parameter meets the template selection module selection is verified in template includes just
Then expression formula;
If satisfied, then determining that the corresponding configuration parameter of the security baseline check item meets default security baseline configuration standard;
If not satisfied, then determining that the corresponding configuration parameter of the security baseline check item does not meet default security baseline configuration mark
It is quasi-.
11. the check device of security baseline according to claim 9, which is characterized in that utilize institute in the emulation module
Terminal emulator is stated by the communication module, by the corresponding acquisition of the security baseline check item in the verification script
Order be sent to it is described to verification object before, the communication module is also used to receive the verification that the user terminal is sent
The configuration information of object;
The configuration information for the verification object that the emulation module is also used to be received according to the communication module is to the peace
The corresponding acquisition of baseline check item is updated entirely.
12. the check device of security baseline according to claim 7, which is characterized in that further include template configuration module;
The communication module is also used to receive the template that the user terminal is sent before receiving the verification sign on and repair
Change instruction;
The template configuration module, the template modification of the transmission of the user terminal for being received according to the communication module
Instruction, modifies to all verification templates stored in the default template library;
The modification includes any one of following: addition is edited and is deleted.
13. a kind of check device of security baseline, which is characterized in that including memory, processor, bus and communication interface;Institute
Memory is stated for storing computer executed instructions, the processor is connect with the memory by the bus;When described
When the check device operation of security baseline, the processor executes the computer executed instructions of the memory storage, with
The check device of the security baseline is set to execute the check method of security baseline as claimed in any one of claims 1 to 6.
14. a kind of computer storage medium, which is characterized in that the computer storage medium includes computer executed instructions, when
When the computer executed instructions are run on computers, so that the computer is executed as described in claim any one of 1-6
Security baseline check method.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201811511445.0A CN109743195A (en) | 2018-12-11 | 2018-12-11 | A kind of check method and device of security baseline |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201811511445.0A CN109743195A (en) | 2018-12-11 | 2018-12-11 | A kind of check method and device of security baseline |
Publications (1)
Publication Number | Publication Date |
---|---|
CN109743195A true CN109743195A (en) | 2019-05-10 |
Family
ID=66359398
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201811511445.0A Pending CN109743195A (en) | 2018-12-11 | 2018-12-11 | A kind of check method and device of security baseline |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN109743195A (en) |
Cited By (23)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN110493254A (en) * | 2019-09-03 | 2019-11-22 | 国家计算机网络与信息安全管理中心 | Industrial Yunan County's overall evaluating method and device |
CN110633571A (en) * | 2019-09-30 | 2019-12-31 | 广州竞远安全技术股份有限公司 | Efficient online checking method and device for information system security configuration |
CN110855652A (en) * | 2019-11-05 | 2020-02-28 | 南方电网数字电网研究院有限公司 | Safety baseline configuration compliance detection method and device, computer equipment and medium |
CN111090690A (en) * | 2019-12-16 | 2020-05-01 | 中国建设银行股份有限公司 | Parameter docking method and device, electronic equipment and storage medium |
CN111159162A (en) * | 2019-12-31 | 2020-05-15 | 中国联合网络通信集团有限公司 | Database configuration method and device |
CN111698168A (en) * | 2020-05-20 | 2020-09-22 | 北京吉安金芯信息技术有限公司 | Message processing method, device, storage medium and processor |
CN111818027A (en) * | 2020-06-28 | 2020-10-23 | 云南电网有限责任公司电力科学研究院 | Method for quickly checking and configuring network security baseline of power monitoring host operating system |
CN111967778A (en) * | 2020-08-19 | 2020-11-20 | 杭州铂钰信息科技有限公司 | Data security detection method and system based on security baseline model |
CN112256672A (en) * | 2020-10-22 | 2021-01-22 | 中国联合网络通信集团有限公司 | Database change approval method and device |
CN112380533A (en) * | 2020-11-17 | 2021-02-19 | 广东电网有限责任公司江门供电局 | Method for checking security baseline of computer terminal |
CN112685743A (en) * | 2020-12-28 | 2021-04-20 | 北京珞安科技有限责任公司 | Automatic reinforcing method and system for host security baseline |
CN112825093A (en) * | 2019-11-21 | 2021-05-21 | 北京天融信网络安全技术有限公司 | Security baseline checking method, host, server, electronic device and storage medium |
CN113011125A (en) * | 2019-12-18 | 2021-06-22 | 海信视像科技股份有限公司 | Printed circuit board checking method, device, equipment and computer storage medium |
CN113505057A (en) * | 2021-06-07 | 2021-10-15 | 广发银行股份有限公司 | Configuration baseline management tool |
CN113553110A (en) * | 2021-07-20 | 2021-10-26 | 中国工商银行股份有限公司 | Automatic correction method, device and system for hardware baseline of server |
CN114157572A (en) * | 2021-11-29 | 2022-03-08 | 中国光大银行股份有限公司 | Security configuration checking system and method |
CN114726722A (en) * | 2022-03-30 | 2022-07-08 | 深圳市国电科技通信有限公司 | Edge cloud collaborative baseline verification and configuration updating method, system and storage medium |
CN114978657A (en) * | 2022-05-17 | 2022-08-30 | 安天科技集团股份有限公司 | Security baseline checking method and device, electronic equipment and storage medium |
CN115086039A (en) * | 2022-06-16 | 2022-09-20 | 北京知道创宇信息技术股份有限公司 | Baseline checking method, device, electronic equipment and medium |
CN115086063A (en) * | 2022-07-05 | 2022-09-20 | 中国联合网络通信集团有限公司 | Baseline verification and/or repair method, system, object, device and system |
CN115239292A (en) * | 2022-07-21 | 2022-10-25 | 北京铭研医药研究有限公司 | Information processing method and system for medicine research and development and production verification |
CN116719558A (en) * | 2023-08-09 | 2023-09-08 | 北京比瓴科技有限公司 | Gitlab baseline inspection method, device, equipment and readable storage medium |
CN117196539A (en) * | 2023-11-01 | 2023-12-08 | 广州大学 | Automatic checking method, system, equipment and medium for security base line |
Citations (15)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20040260818A1 (en) * | 2003-06-23 | 2004-12-23 | Valois Denis Gabriel | Network security verification system and method |
CN201226523Y (en) * | 2008-05-26 | 2009-04-22 | 北京星网锐捷网络技术有限公司 | System for testing switch stability |
CN102075347A (en) * | 2010-11-18 | 2011-05-25 | 北京神州绿盟信息安全科技股份有限公司 | Security configuration checking equipment and method, and network system adopting equipment |
CN102684911A (en) * | 2012-03-14 | 2012-09-19 | 北京神州绿盟信息安全科技股份有限公司 | Security configuration checking device and method and security configuration checking network system |
CN103051496A (en) * | 2012-12-21 | 2013-04-17 | 大唐软件技术股份有限公司 | Monitoring method and device of monitoring point server |
CN103368927A (en) * | 2012-04-11 | 2013-10-23 | 北京神州绿盟信息安全科技股份有限公司 | Security configuration inspecting device and method |
CN103905270A (en) * | 2014-03-11 | 2014-07-02 | 国网湖北省电力公司信息通信公司 | Smart grid android system safety base line automatic checking system and method |
CN104363107A (en) * | 2014-10-21 | 2015-02-18 | 中国联合网络通信集团有限公司 | Inspection method and equipment for security baseline |
CN104579838A (en) * | 2015-01-06 | 2015-04-29 | 浪潮电子信息产业股份有限公司 | Test method for server routing module detection |
CN104735162A (en) * | 2015-04-10 | 2015-06-24 | 上海自仪泰雷兹交通自动化系统有限公司 | Remote log collection method used for security encryption devices of rail transit signal system |
KR20160074029A (en) * | 2014-12-17 | 2016-06-28 | 중앙대학교 산학협력단 | Security policy verification system using authentication based on security management model in industrial environment |
US9660870B1 (en) * | 2016-06-08 | 2017-05-23 | Synack, Inc. | Systems and methods of soft patching security vulnerabilities |
CN106998254A (en) * | 2016-01-22 | 2017-08-01 | 中国移动通信集团广东有限公司 | For the information processing method and device of EPON topology |
CN107679692A (en) * | 2017-09-02 | 2018-02-09 | 深圳供电局有限公司 | Security baseline management system and method |
CN108737425A (en) * | 2018-05-24 | 2018-11-02 | 北京凌云信安科技有限公司 | Fragility based on multi engine vulnerability scanning association analysis manages system |
-
2018
- 2018-12-11 CN CN201811511445.0A patent/CN109743195A/en active Pending
Patent Citations (15)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20040260818A1 (en) * | 2003-06-23 | 2004-12-23 | Valois Denis Gabriel | Network security verification system and method |
CN201226523Y (en) * | 2008-05-26 | 2009-04-22 | 北京星网锐捷网络技术有限公司 | System for testing switch stability |
CN102075347A (en) * | 2010-11-18 | 2011-05-25 | 北京神州绿盟信息安全科技股份有限公司 | Security configuration checking equipment and method, and network system adopting equipment |
CN102684911A (en) * | 2012-03-14 | 2012-09-19 | 北京神州绿盟信息安全科技股份有限公司 | Security configuration checking device and method and security configuration checking network system |
CN103368927A (en) * | 2012-04-11 | 2013-10-23 | 北京神州绿盟信息安全科技股份有限公司 | Security configuration inspecting device and method |
CN103051496A (en) * | 2012-12-21 | 2013-04-17 | 大唐软件技术股份有限公司 | Monitoring method and device of monitoring point server |
CN103905270A (en) * | 2014-03-11 | 2014-07-02 | 国网湖北省电力公司信息通信公司 | Smart grid android system safety base line automatic checking system and method |
CN104363107A (en) * | 2014-10-21 | 2015-02-18 | 中国联合网络通信集团有限公司 | Inspection method and equipment for security baseline |
KR20160074029A (en) * | 2014-12-17 | 2016-06-28 | 중앙대학교 산학협력단 | Security policy verification system using authentication based on security management model in industrial environment |
CN104579838A (en) * | 2015-01-06 | 2015-04-29 | 浪潮电子信息产业股份有限公司 | Test method for server routing module detection |
CN104735162A (en) * | 2015-04-10 | 2015-06-24 | 上海自仪泰雷兹交通自动化系统有限公司 | Remote log collection method used for security encryption devices of rail transit signal system |
CN106998254A (en) * | 2016-01-22 | 2017-08-01 | 中国移动通信集团广东有限公司 | For the information processing method and device of EPON topology |
US9660870B1 (en) * | 2016-06-08 | 2017-05-23 | Synack, Inc. | Systems and methods of soft patching security vulnerabilities |
CN107679692A (en) * | 2017-09-02 | 2018-02-09 | 深圳供电局有限公司 | Security baseline management system and method |
CN108737425A (en) * | 2018-05-24 | 2018-11-02 | 北京凌云信安科技有限公司 | Fragility based on multi engine vulnerability scanning association analysis manages system |
Cited By (34)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN110493254A (en) * | 2019-09-03 | 2019-11-22 | 国家计算机网络与信息安全管理中心 | Industrial Yunan County's overall evaluating method and device |
CN110633571A (en) * | 2019-09-30 | 2019-12-31 | 广州竞远安全技术股份有限公司 | Efficient online checking method and device for information system security configuration |
CN110855652A (en) * | 2019-11-05 | 2020-02-28 | 南方电网数字电网研究院有限公司 | Safety baseline configuration compliance detection method and device, computer equipment and medium |
CN112825093A (en) * | 2019-11-21 | 2021-05-21 | 北京天融信网络安全技术有限公司 | Security baseline checking method, host, server, electronic device and storage medium |
CN112825093B (en) * | 2019-11-21 | 2024-03-12 | 北京天融信网络安全技术有限公司 | Security baseline checking method, host, server, electronic device and storage medium |
CN111090690A (en) * | 2019-12-16 | 2020-05-01 | 中国建设银行股份有限公司 | Parameter docking method and device, electronic equipment and storage medium |
CN111090690B (en) * | 2019-12-16 | 2024-05-03 | 建信金融科技有限责任公司 | Parameter docking method and device, electronic equipment and storage medium |
CN113011125B (en) * | 2019-12-18 | 2023-01-10 | 海信视像科技股份有限公司 | Printed circuit board checking method, device, equipment and computer storage medium |
CN113011125A (en) * | 2019-12-18 | 2021-06-22 | 海信视像科技股份有限公司 | Printed circuit board checking method, device, equipment and computer storage medium |
CN111159162A (en) * | 2019-12-31 | 2020-05-15 | 中国联合网络通信集团有限公司 | Database configuration method and device |
CN111159162B (en) * | 2019-12-31 | 2023-07-25 | 中国联合网络通信集团有限公司 | Database configuration method and equipment |
CN111698168B (en) * | 2020-05-20 | 2022-06-28 | 北京吉安金芯信息技术有限公司 | Message processing method, device, storage medium and processor |
CN111698168A (en) * | 2020-05-20 | 2020-09-22 | 北京吉安金芯信息技术有限公司 | Message processing method, device, storage medium and processor |
CN111818027A (en) * | 2020-06-28 | 2020-10-23 | 云南电网有限责任公司电力科学研究院 | Method for quickly checking and configuring network security baseline of power monitoring host operating system |
CN111967778A (en) * | 2020-08-19 | 2020-11-20 | 杭州铂钰信息科技有限公司 | Data security detection method and system based on security baseline model |
CN112256672B (en) * | 2020-10-22 | 2023-05-30 | 中国联合网络通信集团有限公司 | Database change approval method and device |
CN112256672A (en) * | 2020-10-22 | 2021-01-22 | 中国联合网络通信集团有限公司 | Database change approval method and device |
CN112380533A (en) * | 2020-11-17 | 2021-02-19 | 广东电网有限责任公司江门供电局 | Method for checking security baseline of computer terminal |
CN112380533B (en) * | 2020-11-17 | 2023-12-15 | 广东电网有限责任公司江门供电局 | Method for checking security baseline of computer terminal |
CN112685743A (en) * | 2020-12-28 | 2021-04-20 | 北京珞安科技有限责任公司 | Automatic reinforcing method and system for host security baseline |
CN113505057A (en) * | 2021-06-07 | 2021-10-15 | 广发银行股份有限公司 | Configuration baseline management tool |
CN113553110A (en) * | 2021-07-20 | 2021-10-26 | 中国工商银行股份有限公司 | Automatic correction method, device and system for hardware baseline of server |
CN114157572A (en) * | 2021-11-29 | 2022-03-08 | 中国光大银行股份有限公司 | Security configuration checking system and method |
CN114726722A (en) * | 2022-03-30 | 2022-07-08 | 深圳市国电科技通信有限公司 | Edge cloud collaborative baseline verification and configuration updating method, system and storage medium |
CN114726722B (en) * | 2022-03-30 | 2023-10-27 | 深圳市国电科技通信有限公司 | Bian Yun collaborative baseline checking and configuration updating method, system and storage medium |
CN114978657B (en) * | 2022-05-17 | 2024-02-13 | 安天科技集团股份有限公司 | Security baseline checking method and device, electronic equipment and storage medium |
CN114978657A (en) * | 2022-05-17 | 2022-08-30 | 安天科技集团股份有限公司 | Security baseline checking method and device, electronic equipment and storage medium |
CN115086039A (en) * | 2022-06-16 | 2022-09-20 | 北京知道创宇信息技术股份有限公司 | Baseline checking method, device, electronic equipment and medium |
CN115086063A (en) * | 2022-07-05 | 2022-09-20 | 中国联合网络通信集团有限公司 | Baseline verification and/or repair method, system, object, device and system |
CN115239292A (en) * | 2022-07-21 | 2022-10-25 | 北京铭研医药研究有限公司 | Information processing method and system for medicine research and development and production verification |
CN116719558A (en) * | 2023-08-09 | 2023-09-08 | 北京比瓴科技有限公司 | Gitlab baseline inspection method, device, equipment and readable storage medium |
CN116719558B (en) * | 2023-08-09 | 2024-06-21 | 北京比瓴科技有限公司 | Gitlab baseline inspection method, gitlab baseline inspection device, gitlab baseline inspection equipment and readable storage medium |
CN117196539A (en) * | 2023-11-01 | 2023-12-08 | 广州大学 | Automatic checking method, system, equipment and medium for security base line |
CN117196539B (en) * | 2023-11-01 | 2024-02-27 | 广州大学 | Automatic checking method, system, equipment and medium for security base line |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN109743195A (en) | A kind of check method and device of security baseline | |
CN111045756B (en) | Method, apparatus, computing device and medium for generating interface service | |
US20160283363A1 (en) | Extraction of problem diagnostic knowledge from test cases | |
CN109815147A (en) | Test cases generation method, device, server and medium | |
CN109599095A (en) | A kind of mask method of voice data, device, equipment and computer storage medium | |
CN109976995B (en) | Method and apparatus for testing | |
CN107404418B (en) | Internet product testing method, device, equipment and storage medium | |
CN112634047B (en) | Foreign exchange transaction simulation test method and device, computer equipment and storage medium | |
CN107729246A (en) | For the auxiliary test methods of intended application, device, equipment and storage medium | |
CN105704178A (en) | Task platform access method and task platform access device | |
CN110321154A (en) | A kind of interface message methods of exhibiting, device and the electronic equipment of micro services | |
CN110380932A (en) | Test method and device and test macro for safety equipment | |
CN108305057A (en) | Dispensing apparatus, method and the computer readable storage medium of electronics red packet | |
CN109857575A (en) | Interface call method, device, electronic equipment and storage medium | |
CN111444103A (en) | Automatic testing method for Web page and related equipment | |
CN114253864A (en) | Service testing method and device, electronic equipment and storage medium | |
CN108052449B (en) | Operating system running state detection method and device | |
CN103975567A (en) | Dual-factor authentication method and virtual machine device | |
CN115857958A (en) | Software deployment method based on cloud platform, computer equipment and readable storage medium | |
CN106548264A (en) | A kind of data analysing method and device | |
CN109032911B (en) | Frame rate detection method and device for mobile device and electronic device | |
CN107969003B (en) | Wireless access authentication method | |
CN112799956B (en) | Asset identification capability test method, device and system device | |
CN116361220A (en) | PCIe topology acquisition method and device | |
CN103281221B (en) | Fire-fighting Internet of things system method of testing |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
RJ01 | Rejection of invention patent application after publication | ||
RJ01 | Rejection of invention patent application after publication |
Application publication date: 20190510 |