Installation guide

55
Support
Audit Files
The Nessus vulnerability scanner includes the ability to perform compliance audits of numerous platforms including
databases, Cisco, Unix, and Windows configurations as well as sensitive data discovery based on regex contained in
.audit” files. Audit files are XML-based text files that contain the specific configuration, file permission, and access
control tests to be performed.
Tenable provides a wide range of audit files and new ones are easy to write. These audit files are maintained on the
Tenable Support Portal for users who wish to perform compliance and configuration auditing. The screen capture below
contains a listing of an audit file page with PCI DSS and CIS-based audits.
Audit files are added, edited, downloaded, viewed, and deleted from this web interface. Clicking “Add displays the
following “Add Audit File” dialog screen:
Available fields include:
Table 17 Audit File Fields
Option
Description
Name
A descriptive name assigned to the audit file (not necessarily the actual file name)
Description
Descriptive text about the audit file