OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

sarif message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: More internal MS feedback


Here you go. Here are the four issues with better titles, explanations, and schema change impact:

 

#371: Separate suppression status from kind

#372: Add roles for configuration files

#373: Add suppression.justification

#374: Loosen restrictions on RMS usage of partialFingerprints

 

I will write a single change draft for these tomorrow, then turn my attention back to the remaining few items.

 

Larry

 

From: sarif@lists.oasis-open.org <sarif@lists.oasis-open.org> On Behalf Of Larry Golding (Myriad Consulting Inc)
Sent: Saturday, April 13, 2019 3:42 PM
To: OASIS SARIF TC Discussion List <sarif@lists.oasis-open.org>
Cc: Michael Fanning <Michael.Fanning@microsoft.com>
Subject: [sarif] More internal MS feedback

 

In writing my last email I forgot that an internal MS customer had a small set of feedback items. I’ll paste my raw notes here. Don’t worry if the words don’t make sense; I’ll file issues with the details.

 

- pull out suppression status from kind

+ roles

   - userSpecifiedConfiguration

   - toolSpecifiedConfiguration

+ suppression.justification (last priority)

- more flexibility in how an RMS result matcher uses partial fingerprints to decide whether

  two results fall into the same bucket.

 

Even without the details, you might be able to see that these are quite simple. I’ll write the drafts tomorrow.

 

Larry



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]