SCAP Checklists
SCAP checklist helps you automatically check your system's security by comparing it to set rules. This makes it easier to find weaknesses and make sure your system follows security policies.
HCL BigFix uses the SCAP checklist XML to create BigFix content and makes it available through subscription. Users can load the external site mastheads for each of the available SCAP checklist in the BigFix console. The BigFix server then downloads the content and makes it available to the BigFix administrator for system evaluations.
BigFix currently provides out-of-the-box content for the Federal Desktop Core Configuration (FDCC) SCAP checklists. As new checklists are made available by NIST, HCL BigFix might include those sites as part of the subscription service.
In addition to the Fixlet sites, BigFix includes a reporting dashboard that provides visibility into the results of the system evaluations and a reporting dashboard for generating BigFix content from an SCAP checklist. These dashboards are found in the SCM Reporting site.
To know the supported SCAP checklists, see the SCM Checklist.