Sha256: 7c11f663354ff0363d999e07c27202941e24fbd3dbb73c65aab3aa9882f2a55f

Contents?: true

Size: 1.12 KB

Versions: 5

Compression:

Stored size: 1.12 KB

Contents

---
title: About the security_policy Resource
platform: windows
---

# security_policy

Use the `security_policy` InSpec audit resource to test security policies on the Windows platform.

<br>

## Syntax

A `security_policy` resource block declares the name of a security policy and the value to be tested:

    describe security_policy do
      its('policy_name') { should eq 'value' }
    end

where

* `'policy_name'` must specify a security policy
* `{ should eq 'value' }` tests the value of `policy_name` against the value declared in the test

<br>

## Examples

The following examples show how to use this InSpec audit resource.

### Verify that only the Administrators group has remote access

    describe security_policy do
      its('SeRemoteInteractiveLogonRight') { should eq '*S-1-5-32-544' }
    end

<br>

## Matchers

For a full list of available matchers, please visit our [matchers page](https://www.inspec.io/docs/reference/matchers/).

### policy_name

The `policy_name` matcher must be the name of a security policy:

    its('SeNetworkLogonRight') { should eq '*S-1-5-11' }

Version data entries

5 entries across 5 versions & 1 rubygems

Version Path
inspec-2.1.81 docs/resources/security_policy.md.erb
inspec-2.1.21 docs/resources/security_policy.md.erb
inspec-2.1.10 docs/resources/security_policy.md.erb
inspec-2.0.32 docs/resources/security_policy.md.erb
inspec-2.0.17 docs/resources/security_policy.md.erb