OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

cti message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Re: [cti] Suggestion for STIX 2.1 CSD05


Sounds reasonable to me.Â

Thanks,
Bret
PGP Fingerprint:Â63B4 FC53 680A 6B7D 1447 ÂF2C0 74F8 ACAE 7415 0050
"Without cryptography vihv vivc ce xhrnrw, however, the only thing that can not be unscrambled is an egg."


On Mon, Jan 4, 2021 at 8:46 AM Rich Piazza <rpiazza@mitre.org> wrote:

Hi everyone,

Â

DHS and MITRE have a small addition we would like to be included in the STIX CSD.

Â

The suggested change to the text of extension-definition section is that a human readable reference (e.g. Markdown, webpage) Âbe provided.ÂCurrently, although the specification does not mandate the content of the schema property of an extension-definition object reference, Âa URL pointing to a json schema is suggested.Â

Â

The additional normative/informative statement would be:

Â

ÂÂÂÂÂÂÂÂÂÂÂÂÂÂÂ An external reference to the documentation of the extension-definition (SHOULD/MAY) be provided.

Â

The TC can decide the degree of desirability of this important aspect of an extension.Â

ÂÂ

The main concern of DHS was that the meaning should be available to consumers of extensions. Json Schema allows for commenting or documentation, but it is not an appropriate place for users to find such information. The inclusion of an external reference to documentation would satisfy DHSâs concerns.

Â

Regards,

Â

ÂÂÂÂÂÂÂÂÂÂÂÂÂÂÂ Marlon and Rich P.

Â

Â


This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]