OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

ohdf message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Modified: OHDF TC Meeting


Submitter's message
Added agenda and meeting link info
-- Mr. Aaron Lippold
Event Title: OHDF TC Meeting

Date: Wednesday, 10 January 2024, 05:00pm to 06:00pm UTC
Location: TBD (online)
Description

Topic: OHDF January 2024 Meeting
Time: Jan 10, 2024 12:00 PM Eastern Time (US and Canada)

Join ZoomGov Meeting
https://mitre.zoomgov.com/j/1615093982

Meeting ID: 161 509 3982
One tap mobile
+16692545252,,1615093982# US (San Jose)
+16468287666,,1615093982# US (New York)

Dial by your location
        +1 669 254 5252 US (San Jose)
        +1 646 828 7666 US (New York)
        +1 646 964 1167 US (US Spanish Line)
        +1 551 285 1373 US (New Jersey)
        +1 669 216 1590 US (San Jose)
        +1 415 449 4000 US (US Spanish Line)
Meeting ID: 161 509 3982
Find your local number: https://mitre.zoomgov.com/u/aeBviT6wQp

Join by SIP
1615093982@sip.zoomgov.com

Join by H.323
161.199.138.10 (US West)
161.199.136.10 (US East)
Meeting ID: 161 509 3982


RSVP
This meeting counts towards voter eligibility.

Agenda
  • Introductions from the TC leadership (MITRE, industry leaders, OASIS Open personnel)
  • Establishing regular TC cadence
    • Current suggestion: Monthly
  • *Current state of OHDF
  • Plans for next phase of activity
    • Capture and formalize current OHDF schema
      • Current suggestion: use [NIST Metaschema](https://pages.nist.gov/metaschema/)
      •  Open call for other suggestions from TC
      • Resolves open PR on [Seed Contribution InSpecJS Schemas](https://github.com/oasis-tcs/ohdf/pull/4)
    • Develop the next data elements to be established for OHDF v1.0 draft
      • Current suggestions:
        • "Target Data" -- the system to which the OHDF data pertains
        • "Overall Control Status" -- dictates the "final" state of the control after all post-processing (attestations, waivers, etc.) is applied; can be used to override control state via attestations and waivers
        • "Run Identifier" -- a UUID of some kind to differentiate the same OHDF-formatted scan run against the same target multiple times
          • Resolves issues raised by users regarding OHDF not having any IDs for individual runs
      • "Adjudicated Control" -- boolean which is flipped to True if the Overall Control Status was changed by an attestation or waiver
        • Resolves concerns that attestations and waivers could be a "thumb on the scale" that would not be clear from the OHDF data
  • Next datatype integration research
    • Current suggestion: Integrating SBOM data into OHDF
    • Open call for other suggestions from TC
  • Open floor for TC members


Owner: Mr. Stefan Hagen
Group: OASIS Heimdall Data Format (OHDF) TC
Sharing: This event is shared with the OASIS Open (General Membership), and General Public groups. Public Event Link
  • Learn more about subscribing here.
  • View the OASIS Heimdall Data Format (OHDF) TC calendar here.
  • You may receive future notifications with updates to this event. Update the event on your calendar by accepting the changes.

Attachment: ical_54507.ics
Description: application/ics

BEGIN:VCALENDAR
CALSCALE:GREGORIAN
METHOD:REQUEST
VERSION:2.0
PRODID:-//Kavi Corporation//NONSGML Kavi Groups//EN
X-MS-OLK-FORCEINSPECTOROPEN:TRUE
BEGIN:VTIMEZONE
TZID:UTC
BEGIN:STANDARD
DTSTART:20000101T000000
RRULE:FREQ=YEARLY;BYMONTH=1
TZNAME:UTC
TZOFFSETFROM:+0000
TZOFFSETTO:+0000
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
STATUS:CONFIRMED
TRANSP:OPAQUE
DTSTAMP:20240108T192200Z
DTSTART;VALUE=DATE-TIME;TZID=UTC:20240110T170000
DTEND;VALUE=DATE-TIME;TZID=UTC:20240110T180000
SEQUENCE:2
SUMMARY:OHDF TC Meeting
LOCATION:TBD (online)
LAST-MODIFIED:20240108T192200Z
ORGANIZER:workgroup_mailer@lists.oasis-open.org
ATTENDEE;CUTYPE=GROUP:MAILTO:ohdf@lists.oasis-open.org
DESCRIPTION:Topic: OHDF January 2024 Meeting\nTime: Jan 10\, 2024 12:00 
 PM Eastern Time (US and Canada)\n\nJoin ZoomGov Meeting\nhtt
 ps://mitre.zoomgov.com/j/1615093982\n\nMeeting ID: 161 509 3
 982\nOne tap mobile\n+16692545252\,\,1615093982# US (San Jos
 e)\n+16468287666\,\,1615093982# US (New York)\n\nDial by you
 r location\n        +1 669 254 5252 US (San Jose)\n        +
 1 646 828 7666 US (New York)\n        +1 646 964 1167 US (US
  Spanish Line)\n        +1 551 285 1373 US (New Jersey)\n   
      +1 669 216 1590 US (San Jose)\n        +1 415 449 4000 
 US (US Spanish Line)\nMeeting ID: 161 509 3982\nFind your lo
 cal number: https://mitre.zoomgov.com/u/aeBviT6wQp\n\nJoin b
 y SIP\n1615093982@sip.zoomgov.com\n\nJoin by H.323\n161.199.
 138.10 (US West)\n161.199.136.10 (US East)\nMeeting ID: 161 
 509 3982\n\nAgenda: \n	Introductions from the TC leadership 
 (MITRE\, industry leaders\, OASIS Open personnel)\n	Establis
 hing regular TC cadence\n	\n		Current suggestion: Monthly\n	
 \n	\n	*Current state of OHDF\n	Plans for next phase of activ
 ity\n	\n		Capture and formalize current OHDF schema\n		\n			
 Current suggestion: use [NIST Metaschema](https://pages.nist
 .gov/metaschema/)\n			 Open call for other suggestions from 
 TC\n			Resolves open PR on [Seed Contribution InSpecJS Schem
 as](https://github.com/oasis-tcs/ohdf/pull/4)\n		\n		\n		Dev
 elop the next data elements to be established for OHDF v1.0 
 draft\n		\n			Current suggestions:\n			\n				&quot\;Target D
 ata&quot\; -- the system to which the OHDF data pertains\n		
 		&quot\;Overall Control Status&quot\; -- dictates the &quot
 \;final&quot\; state of the control after all post-processin
 g (attestations\, waivers\, etc.) is applied\; can be used t
 o override control state via attestations and waivers\n				&
 quot\;Run Identifier&quot\; -- a UUID of some kind to differ
 entiate the same OHDF-formatted scan run against the same ta
 rget multiple times\n				\n					Resolves issues raised by us
 ers regarding OHDF not having any IDs for individual runs\n	
 			\n				\n			\n			\n			&quot\;Adjudicated Control&quot\; --
  boolean which is flipped to True if the Overall Control Sta
 tus was changed by an attestation or waiver\n			\n				Resolv
 es concerns that attestations and waivers could be a &quot\;
 thumb on the scale&quot\; that would not be clear from the O
 HDF data\n			\n			\n		\n		\n	\n	\n	Next datatype integration
  research\n	\n		Current suggestion: Integrating SBOM data in
 to OHDF\n		Open call for other suggestions from TC\n	\n	\n	O
 pen floor for TC members\n\nGroup: OASIS Heimdall Data Forma
 t (OHDF)  TC\nCreator: Mr. Stefan Hagen
URL:https://www.oasis-open.org/apps/org/workgroup/ohdf/event.php?event_id=54507
UID:https://www.oasis-open.org/apps/org/workgroup/ohdf/event.php?event_id=54507
BEGIN:VALARM
ACTION:DISPLAY
DESCRIPTION:REMINDER
TRIGGER;RELATED=START:-PT00H15M00S
END:VALARM
END:VEVENT
END:VCALENDAR


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]