<?xml version="1.0" encoding="UTF-8"?>
<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns="http://purl.org/rss/1.0/">
<channel rdf:about="http://www.nessus.org/">
<title>Tenable Audit Updates</title>
<link>http://www.nessus.org/</link>
<description>Configuration Auditing Updates for Nessus</description>
<items>
<rdf:Seq>
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=163" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=157" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=156" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=154" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=153" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=148" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=147" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=136" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=135" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/news/rssview.php?id=125" />
</rdf:Seq>
</items>
</channel>
<image rdf:about="http://www.nessus.org/images/RssLogo.jpg">
<title>Nessus News</title>
<url>http://www.nessus.org/images/RssLogo.jpg</url>
<link>http://www.nessus.org/</link>
</image>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=163">
<title>Updated FDCC Windows XP Desktop Audit Policy</title>
<description><![CDATA[The Windows FDCC_Desktops_v90_v2.audit policy for Nessus ProfessionalFeed users has been updated to reflect recent changes in the original NIST SCAP content. <br />
<br />
Nessus users can obtain this updated audit policy by visiting the support portal, choosing "Downloads" and then choosing the "Download NIST and FDCC Compliance Audit Policies". The updated audit policy should then replace any existing audit polices you are currently using in your FDCC audits.<br />
<br />
If you are a Security Center user, you can also take advantage of this audit policy, however Tenable recommends that you should generate your own audit policies directly from NIST XCCDF content with the X Tool. For more information on how to do this with the Security Center, please refer to the "X Tool SCAP Assessments" guide in the documentation area of the support portal. <br />
<br><a href="http://plugins-customers.nessus.org/">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=163</link>
<dc:date>2008-09-07T13:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=157">
<title>CIS Certified HP-UX Audits</title>
<description><![CDATA[Tenable recently received certification to perform best practice audits of HP-UX 11.x operating systems from the Center for Internet Security. <br />
<br />
To obtain these audit polices for use with Nessus or the Security Center, please log into the Customer Support Portal, click on 'Download', then click on 'Download CIS Compliance Audit Files' and then choose the audit policy named 'HP-UX v1.4.1'.<br />
<br />
<br><a href="http://plugins-customers.nessus.org/">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=157</link>
<dc:date>2008-09-07T11:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=156">
<title>DISA STIG Updates</title>
<description><![CDATA[All DISA STIG audit polices for Nessus and the Security Center were recently updated. A new DISA STIG policy for Vista was also added.<br />
<br />
These can be downloaded from the Tenable Support Portal by clicking 'Downloads' and then 'Download Configuration Audit Policies'. The policies are all labeled with a "DISA STIG" standard.<br />
<br />
 <br><a href="http://plugins-customers.nessus.org/">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=156</link>
<dc:date>2008-09-07T13:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=154">
<title>Static FDCC XP and Vista Audit Updates </title>
<description><![CDATA[Tenable has updated the FDCC_Desktops_v90_v2.audit and FDCC_Vista_v2.audit policies available on the Tenable Support Portal. These policies audit the configuration of XP Pro and Vista desktop systems. The updates reflect the recent changes introduced to FDCC audits on June 20, 2008. <br />
<br />
If you are Nessus Direct or Professional Feed subscriber, these policies can be downloaded from the Tenable Support Portal. Follow the links for 'Downloads' and then 'Download NIST and FDCC Compliance Audit Policies'. <br />
<br />
If you are a Security Center user, these polices can still be used to perform audits, however, we recommend that you obtain the xTool and generate your own audit polices directly fro the NIST XCCDF content. To learn more about using the xTool and performing certified SCAP audits, please read the <a href="http://cgi.tenablesecurity.com/XTool_SCAP.pdf">X Tool SCAP Assesments</a> guide.<br />
<br />
 <br />
<br />
<br><a href="https://plugins-customers.nessus.org/support-center/index.php?x=&mod_id=1">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=154</link>
<dc:date>2008-09-07T09:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=153">
<title>AIX Best Practice and PCI Audits Available</title>
<description><![CDATA[Tenable's Research group has published two new configuration audit policies for the AIX platform. <br />
<br />
The first is titled 'AIX Best Practices' and is based loosely on the Center for Internet Security CIS_AIX_Benchmark_v1.0.1 best practices guide. This guide referenced an older version of AIX. The new AIX audit policy from Tenable is applicable for modern AIX deployments and performs comparable CIS style audits. <br />
<br />
The second AIX policy is for PCI configuration auditing. It is aptly named 'PCI AIX'. Although Tenable recommends Center for Internet Security policies for more comprehensive auditing, the PCI audit polices focus on the minimal settings required for PCI. <br />
<br />
Both of these AIX audit policies are available on the Tenable Support Portal by logging in, clicking on Downloads, then by clicking on Download Configuration Audit Polices. <br />
<br />
Each of these new audit policies also makes use of some new APIs available for the UNIX compliance checks. If you are testing or trying these plugins, but sure to update your plugins prior to running these. The new APIs include support for the "info" keyword which allows more information to be generated in the Nessus report about the specific item being audited. <br />
<br><a href="http://plugins-customers.nessus.org/">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=153</link>
<dc:date>2008-09-07T12:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=148">
<title>Solaris 10 CIS Audit Update </title>
<description><![CDATA[Tenable Network Security has received certification from the Center for Internet Security to perform best practice configuration audits of Solaris 10 deployments. <br />
<br />
The certified audit policy is now available on the Support Portal. To obtain the policy, click on 'Downloads', then click on 'Download CIS Compliance Audit Files' and then look for the 'Solaris 10 v4.0' audit policy. <br />
<br />
To use this policy with Nessus, save the audit file to the system running the Nessus Client and create a scan policy that makes use of this new audit for Solaris 10. <br />
<br />
To use this policy with Security Center 3.4, as an administrator, upload the new audit policy and then create one or more vulnerabilities policies which make use of the Solaris 10 audit.  <br><a href="https://plugins-customers.nessus.org/support-center/index.php?x=&mod_id=104">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=148</link>
<dc:date>2008-09-07T14:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=147">
<title>Windows Nessus Policy Creator 1.0.5 Released</title>
<description><![CDATA[Tenable Network Security has released version 1.0.5 of the Windows Nessus Policy Creator. This releases includes performance enhancements, Windows 2000 compatibility and consistent behavior when connected to a domain or while detached.<br />
<br />
To obtain the tool, log into the Customer Portal at the below link, choose 'Downloads', then choose 'Download Compliance Checks Tools' and then WNPC-1.0.5.exe download.  <br />
<br />
The WNPC allows Windows users and administrators to create a Nessus .audit file from the current running settings of a Windows system. <br />
<br />
 <br><a href="https://plugins-customers.nessus.org/support-center/index.php?x=">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=147</link>
<dc:date>2008-09-07T13:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=136">
<title>Version 2.0.3 of i2a Tool</title>
<description><![CDATA[Version 2.0.3 of the i2a tool is now available. This release adds support for reversible encryption and also fixes a bug which incorrectly interprets file, service and registry audit settings as permission settings. <br />
<br />
The updated tool is available on the Tenable Customer Portal by clicking on the "Download" button and then the "Download Compliance Checks Tools" button.<br><a href="http://plugins-customers.nessus.org/">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=136</link>
<dc:date>2008-09-07T22:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=135">
<title>Security Center Receives FDCC Certification</title>
<description><![CDATA[Tenable recently concluded certification testing for the Federal Desktop Core Configuration and SCAP certifications. <br />
<br />
Security Center customers that wish to perform FDCC certified audits and reporting to NIST, can email support@tenablesecuritiy.com to request a copy of the new xTool. The xTool allows conversion of XCCDF SCAP content to Nessus .audit policies which can be loaded into the Security Center. Results from the Security Center audit can also also be then loaded back into the xTool to produce an FDCC XML report for submission to NIST. <br />
<br />
The Tenable blog entry below provides more detail on how this process works. An extensive <a href="http://cgi.tenablesecurity.com/XTool_SCAP.pdf">document </a> which has step-by-step guides to performing FDCC auditing with the Security Center is also available.<br />
<br><a href="http://blog.tenablesecurity.com/2008/04/tenable-receive.html">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=135</link>
<dc:date>2008-09-07T21:33:00-04:00</dc:date>
</item>
<item rdf:about="http://www.tenablesecurity.com/news/rssview.php?id=125">
<title>Windows Nessus Policy Creator 1.0.4 Released</title>
<description><![CDATA[Version 1.0.4 of the Windows Nessus Policy Creator has been released and is now available on the <a href="https://plugins-customers.nessus.org/support-center/index.php?x=&mod_id=1">Customer Support Portal</a>. <br />
<br />
Version 1.0.4 now supports <a href="http://blog.tenablesecurity.com/2007/12/version-2-of-wi.html">version 2</a> of the Windows compliance checks. <br />
<br />
To obtain the updated tool, log into the support portal, click on the 'Downloads' button and then the 'Download Compliance Check Tools' button.<br />
<br />
The link below points to an original Tenable Blog entry about Windows Nessus Policy Creator usage. <br><a href="http://blog.tenablesecurity.com/2006/09/creating_gold_b.html">More info</a>]]></description>
<link>http://www.tenablesecurity.com/news/rssview.php?id=125</link>
<dc:date>2008-09-07T12:33:00-05:00</dc:date>
</item>
</rdf:RDF>
