-
Notifications
You must be signed in to change notification settings - Fork 197
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Added OSCAL-deep-diff content to docs #1248
Added OSCAL-deep-diff content to docs #1248
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM. Thanks!
@@ -36,6 +36,7 @@ See the [NIST Software Disclaimer](https://www.nist.gov/disclaimer) for more inf | |||
| [DRT Confidence](https://www.drtstrategies.com/drt-confidence-fedramp/) | DRT Strategies Inc. | DRTConfidence is a next generation Governance, Risk and Compliance (GRC) solution to help organizations transition to OSCAL and continuous compliance. DRTConfidence is available in FedRAMP High environments and supports all OSCAL artifacts: Catalogs, Profiles, Component Definitions, System Security Plans, Security Assessment Plans, Security Assessment Reports, POAMs and conforms to the OSCAL v1.0.0 specification and its schemas. Additional information can be found at [DRT Confidence for FedRAMP](https://www.drtstrategies.com/drt-confidence-fedramp/). | Commercial License | | |||
| [Ignyte Assurance Platform](https://www.ignyteplatform.com ) | Ignyte Assurance Platform | Modern security risk and compliance orchestration platform for managing near real-time authorization decisions for FedRAMP, Continuous ATOs and CNSSI 1253 packages (ie SSPs, SAP, SARs, POA&Ms, etc...) Allows the ability to build, manage and streamline OSCAL components. OSCAL data model with options for simplified OSCAL data models for commercial, Federal and DoD ATO packages. | Commercial License | | |||
| [OSCAL4NEO4J](/~https://github.com/Agh42/oscal4neo4j) | The OSCAL4NEO4J Project | This project features a set of Neo4J cypher scripts which will import OSCAL catalogs and profiles directly from the official Github-repositories into a Neo4J database. Once imported, the information can be queried to gain insight into the structure of those catalogs and baselines. The project aims to add tool support for the implementation and assessment layers by allowing generation of component definitions, system security plans, assessment-plans, assessment-results and POA&Ms. | open source | | |||
| [OSCAL Deep Diff](/~https://github.com/usnistgov/oscal-deep-diff) | NIST OSCAL Project | A Typescript-based CLI application and library that produces machine readable and human-consumable comparisons of JSON OSCAL artifacts. | open source | |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I suggest the new/added tools should be appended at the end of the table to not upset anyone (for fairness).
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Please see the comment regarding the placement of the new information in the table. Other than that, the information is accurate. @david-waltermire-nist - I know the PR was merged, but I hope we can fix this. We applied this rule to others, so we should apply the rule to us as well.
@iMichaela The tools on the tools page are listed alphabetically. The events page is listed in reverse chronological order. I believe the placement for these items is correct, given the above. I'll add notes to these pages about the ordering. |
@david-waltermire-nist - I realized that about the events page. I like the alphabetical listing approach. We did not have it before and did not realize it has been implemented. Sorry. Just wanted to be fair to everyone. |
Committer Notes
Added OSCAL-deep-diff to the tools page, and the recent lunch with the devs presentation to the presentation page.
Note the base branch is not set to
develop
as the contributing doc suggests, sincedevelop
is currently significantly out of date on thetools
page, and would cause merge conflicts down the line.All Submissions:
"?
Changes to Core Features: