Skip to content

Commit

Permalink
wip
Browse files Browse the repository at this point in the history
  • Loading branch information
Gabeblis committed Dec 13, 2024
1 parent 37651a1 commit 4398796
Show file tree
Hide file tree
Showing 75 changed files with 12,096 additions and 12,096 deletions.
68 changes: 34 additions & 34 deletions src/content/awesome-cloud/xml/AwesomeCloudSSP1.xml

Large diffs are not rendered by default.

70 changes: 35 additions & 35 deletions src/content/awesome-cloud/xml/AwesomeCloudSSP2.xml

Large diffs are not rendered by default.

8,328 changes: 4,164 additions & 4,164 deletions src/content/rev5/baselines/xml/FedRAMP_rev5_HIGH-baseline_profile.xml

Large diffs are not rendered by default.

512 changes: 256 additions & 256 deletions src/content/rev5/baselines/xml/FedRAMP_rev5_LI-SaaS-baseline_profile.xml

Large diffs are not rendered by default.

4,838 changes: 2,419 additions & 2,419 deletions src/content/rev5/baselines/xml/FedRAMP_rev5_LOW-baseline_profile.xml

Large diffs are not rendered by default.

7,310 changes: 3,655 additions & 3,655 deletions src/content/rev5/baselines/xml/FedRAMP_rev5_MODERATE-baseline_profile.xml

Large diffs are not rendered by default.

1,542 changes: 771 additions & 771 deletions src/content/rev5/examples/ssp/xml/fedramp-ssp-example.oscal.xml

Large diffs are not rendered by default.

24 changes: 12 additions & 12 deletions src/content/rev5/resources/xml/FedRAMP_extensions.xml
Original file line number Diff line number Diff line change
Expand Up @@ -9,7 +9,7 @@
<revision>
<published>2023-06-30T00:00:00Z</published>
<version>DRAFT-01</version>
<prop name="party-uuid" ns="https://fedramp.gov/ns/oscal" value="9505ecff-86c4-42ad-aeb9-e6b0f8eacb69"/>
<prop name="party-uuid" ns="http://fedramp.gov/ns/oscal" value="9505ecff-86c4-42ad-aeb9-e6b0f8eacb69"/>
<remarks>
<p>Initial draft for fedramp-2.0.0-oscal-1.1.1 release. Subject to change.</p>
</remarks>
Expand Down Expand Up @@ -94,7 +94,7 @@
<!-- OSCAL Extension Namespace Value -->
<!-- ===================================================================== -->

<extension-namespace ns="https://fedramp.gov/ns/oscal"/>
<extension-namespace ns="http://fedramp.gov/ns/oscal"/>

<!-- ===================================================================== -->
<!-- EXTENSIONS -->
Expand Down Expand Up @@ -349,7 +349,7 @@
<constraint>
<matches data-type="string"/>
<has-cardinality min-occurs="0" max-occurs="1"/>
<expect test=".[@name='pta-4'][@ns='https://fedramp.gov/ns/oscal']/@value='yes' and .[@name='sorn-id'][@ns='https://fedramp.gov/ns/oscal']"/>
<expect test=".[@name='pta-4'][@ns='http://fedramp.gov/ns/oscal']/@value='yes' and .[@name='sorn-id'][@ns='http://fedramp.gov/ns/oscal']"/>
</constraint>
<remarks>
<p>Deprecated.</p>
Expand Down Expand Up @@ -427,7 +427,7 @@
<extension-name>interconnection-direction</extension-name>
<formal-name>Interconnection Direction</formal-name>
<description>Identifies the direction of information flow for the interconnection.</description>
<binding pattern="o:component[@component-type='interconnection']/o:prop[@name='direction'][@ns='https://fedramp.gov/ns/oscal']"/>
<binding pattern="o:component[@component-type='interconnection']/o:prop[@name='direction'][@ns='http://fedramp.gov/ns/oscal']"/>
<constraint>
<matches data-type="token"/>
<allowed-values allow-other="no">
Expand All @@ -446,7 +446,7 @@
<extension-name>interconnection-security</extension-name>
<formal-name>Interconnection Security</formal-name>
<description>Identifies the type of security applied to the interconnection.</description>
<binding pattern="o:component[@component-type='interconnection']/o:prop[@name='connection-security'][@ns='https://fedramp.gov/ns/oscal']/@value"/>
<binding pattern="o:component[@component-type='interconnection']/o:prop[@name='connection-security'][@ns='http://fedramp.gov/ns/oscal']/@value"/>
<constraint>
<matches data-type="token"/>
<allowed-values allow-other="no">
Expand Down Expand Up @@ -1458,7 +1458,7 @@
<constraint name="control-origination-constraints">
<formal-name>Control Origination</formal-name>
<description>The point(s) from which the control satisfaction originates.</description>
<binding pattern="/o:system-security-plan/o:control-implmentation/o:implemented-requirement/o:prop[@name='control-origination'][@ns='https://fedramp.gov/ns/oscal']/@value"/>
<binding pattern="/o:system-security-plan/o:control-implmentation/o:implemented-requirement/o:prop[@name='control-origination'][@ns='http://fedramp.gov/ns/oscal']/@value"/>
<matches data-type="token"/>
<allowed-values allow-other="no">
<enum value="sp-corporate" label="SP Corporate">Service Provider (Corporate)</enum>
Expand All @@ -1472,7 +1472,7 @@
<constraint name="control-implementation-status-constraints">
<formal-name>Control Implementation Status Constraints</formal-name>
<description>Defines the data type and allowed values for the Control Implementation Status</description>
<binding pattern="/o:system-security-plan/o:control-implmentation/o:implemented-requirement/o:prop[@name='implementation-status'][@ns='https://fedramp.gov/ns/oscal']/@value"/>
<binding pattern="/o:system-security-plan/o:control-implmentation/o:implemented-requirement/o:prop[@name='implementation-status'][@ns='http://fedramp.gov/ns/oscal']/@value"/>
<matches data-type="token"/>
<allowed-values allow-other="no">
<enum value="implemented" label="Implemented">The assessor finds sufficient evidence to agree the control objective is fully implemented.</enum>
Expand All @@ -1491,7 +1491,7 @@
<description>Remarks are required for certain Control Implementation Status values.</description>
<binding pattern="/o:system-security-plan/o:control-implmentation/o:implemented-requirement"/>
<matches data-type="NCName"/>
<expect test="(o:prop[@name='planned-completion'][@ns='https://fedramp.gov/ns/oscal'])"/>
<expect test="(o:prop[@name='planned-completion'][@ns='http://fedramp.gov/ns/oscal'])"/>
</constraint>

<constraint>
Expand All @@ -1509,10 +1509,10 @@
<description>If the control implementation status is "Planned" a "Planned Implementation Date" must be provided.</description>
<prop name="reference">3.1</prop>
<binding pattern="/o:system-security-plan/o:control-implementation/o:implemented-requirement[o:prop[@name='implementation-status'][@value='planned']]"/>
<expect test="(o:prop[@name='implementation-status'][@ns='https://fedramp.gov/ns/oscal'][@value='partial']/remarks)"/>
<expect test="(o:prop[@name='implementation-status'][@ns='https://fedramp.gov/ns/oscal'][@value='planned']/remarks)"/>
<expect test="(o:prop[@name='implementation-status'][@ns='https://fedramp.gov/ns/oscal'][@value='alternative']/remarks)"/>
<expect test="(o:prop[@name='implementation-status'][@ns='https://fedramp.gov/ns/oscal'][@value='not-applicable']/remarks)"/>
<expect test="(o:prop[@name='implementation-status'][@ns='http://fedramp.gov/ns/oscal'][@value='partial']/remarks)"/>
<expect test="(o:prop[@name='implementation-status'][@ns='http://fedramp.gov/ns/oscal'][@value='planned']/remarks)"/>
<expect test="(o:prop[@name='implementation-status'][@ns='http://fedramp.gov/ns/oscal'][@value='alternative']/remarks)"/>
<expect test="(o:prop[@name='implementation-status'][@ns='http://fedramp.gov/ns/oscal'][@value='not-applicable']/remarks)"/>
<remarks>
<p>In the SSP, if <code>implemented-requirement</code> includes <code>prop[@name='implementation-status']</code> with <code>value='planned'</code>, a <code>planned-completion-date</code> extension must be provided.</p>
</remarks>
Expand Down
4 changes: 2 additions & 2 deletions src/content/rev5/resources/xml/fedramp_threats.xml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
<?xml version="1.0" encoding="UTF-8"?>
<fedramp-threats xmlns="https://fedramp.gov/ns/oscal" uuid="5683bfeb-a111-4cf9-86ae-43523f85bdc9">
<fedramp-threats xmlns="http://fedramp.gov/ns/oscal" uuid="5683bfeb-a111-4cf9-86ae-43523f85bdc9">

<metadata>
<title>FedRAMP Defined Threat Table [Experimental]</title>
Expand All @@ -10,7 +10,7 @@
<revision>
<published>2023-06-30T00:00:00Z</published>
<version>DRAFT-01</version>
<prop name="party-uuid" ns="https://fedramp.gov/ns/oscal" value="20fcdba5-796e-43fd-9478-e3b949567c00"/>
<prop name="party-uuid" ns="http://fedramp.gov/ns/oscal" value="20fcdba5-796e-43fd-9478-e3b949567c00"/>
<remarks>
<p>Initial draft for fedramp-2.0.0-oscal-1.1.1 release. Subject to change.</p>
</remarks>
Expand Down
32 changes: 16 additions & 16 deletions src/content/rev5/resources/xml/fedramp_values.xml
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
<?xml version="1.0" encoding="UTF-8"?>
<fedramp-values
xmlns="https://fedramp.gov/ns/oscal">
xmlns="http://fedramp.gov/ns/oscal">
<metadata>
<title>[EXPERIMENTAL] FedRAMP Defined Identifiers and Accepted Values</title>
<title-short>FedRAMP Data Values (Experimental)</title-short>
Expand All @@ -13,7 +13,7 @@
<version>DRAFT-01</version>
<prop
name="party-uuid"
ns="https://fedramp.gov/ns/oscal"
ns="http://fedramp.gov/ns/oscal"
value="b6a86c7d-4883-4ff8-9bcf-632b72ac3b80"/>
<remarks>
<p>Initial draft for fedramp-2.0.0-oscal-1.1.1 release. Subject to change.</p>
Expand All @@ -28,7 +28,7 @@
<namespace>
<ns
name="fedramp"
ns="https://fedramp.gov/ns/oscal"/>
ns="http://fedramp.gov/ns/oscal"/>
</namespace>

<value-set
Expand Down Expand Up @@ -134,7 +134,7 @@
<formal-name>Authorization Type</formal-name>
<description>The FedRAMP Authorization Type</description>
<binding
pattern="system-characteristics/prop[@name='authorization-type'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="system-characteristics/prop[@name='authorization-type'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand Down Expand Up @@ -177,7 +177,7 @@
<formal-name>Deployment Model</formal-name>
<description>The cloud deployment model.</description>
<binding
pattern="system-characteristics/prop[@name='cloud-deployment-model'][@ns='https://fedramp.gov/ns/oscal']/@value"/>
pattern="system-characteristics/prop[@name='cloud-deployment-model'][@ns='http://fedramp.gov/ns/oscal']/@value"/>
<allowed-values
allow-other="no">
<enum
Expand Down Expand Up @@ -246,7 +246,7 @@
<formal-name>Privacy Threshold Analysis (Q1)</formal-name>
<description>Does the ISA collect, maintain, or share PII in any identifiable form?</description>
<binding
pattern="system-information/prop[@name='pta-1'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="system-information/prop[@name='pta-1'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand All @@ -263,7 +263,7 @@
<formal-name>Privacy Threshold Analysis (Q2)</formal-name>
<description>Does the ISA collect, maintain, share PII info from or about the public?</description>
<binding
pattern="system-information/prop[@name='pta-2'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="system-information/prop[@name='pta-2'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand All @@ -280,7 +280,7 @@
<formal-name>Privacy Threshold Analysis (Q3)</formal-name>
<description>Has a Privacy Impact Assessment ever been performed for the ISA?</description>
<binding
pattern="system-information/prop[@name='pta-3'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="system-information/prop[@name='pta-3'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand All @@ -297,7 +297,7 @@
<formal-name>Privacy Threshold Analysis (Q4)</formal-name>
<description>Is there a Privacy Act System of Records Notice (SORN) for this ISA system?</description>
<binding
pattern="system-information/prop[@name='pta-4'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="system-information/prop[@name='pta-4'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand Down Expand Up @@ -438,7 +438,7 @@
<formal-name>User Sensitivity level</formal-name>
<description>Identifies the sensitivity level of the user.</description>
<binding
pattern="user/prop[@name='sensitivity'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="user/prop[@name='sensitivity'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand All @@ -464,7 +464,7 @@
<formal-name>Interconnection Direction</formal-name>
<description>Identifies the direction of information flow for the interconnection.</description>
<binding
pattern="component[@component-type='interconnection']/prop[@name='interconnection-direction'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="component[@component-type='interconnection']/prop[@name='interconnection-direction'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand All @@ -484,7 +484,7 @@
<formal-name>Interconnection Security</formal-name>
<description>Identifies the type of security applied to the interconnection.</description>
<binding
pattern="component[@component-type='interconnection']/prop[@name='interconnection-security'][@ns='https://fedramp.gov/ns/oscal']/@value"/>
pattern="component[@component-type='interconnection']/prop[@name='interconnection-security'][@ns='http://fedramp.gov/ns/oscal']/@value"/>
<allowed-values
allow-other="no">
<enum
Expand Down Expand Up @@ -612,9 +612,9 @@
<formal-name>Scan Type</formal-name>
<description>Identifies the type of scan.</description>
<binding
pattern="component/prop[@name='scan-type'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="component/prop[@name='scan-type'][@ns='http://fedramp.gov/ns/oscal']"/>
<binding
pattern="inventory-item/prop[@name='scan-type'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="inventory-item/prop[@name='scan-type'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="no">
<enum
Expand Down Expand Up @@ -758,7 +758,7 @@
<formal-name>Control Origination</formal-name>
<description>The point(s) from which the control satisfaction originates.</description>
<binding
pattern="implemented-requirement/prop[@name='control-origination'][@ns='https://fedramp.gov/ns/oscal']/@value"/>
pattern="implemented-requirement/prop[@name='control-origination'][@ns='http://fedramp.gov/ns/oscal']/@value"/>
<allowed-values
allow-other="no">
<enum
Expand All @@ -784,7 +784,7 @@
<formal-name>Attachment Type</formal-name>
<description>Identifies the type of attachment.</description>
<binding
pattern="resource/prop[@name='type'][@ns='https://fedramp.gov/ns/oscal']"/>
pattern="resource/prop[@name='type'][@ns='http://fedramp.gov/ns/oscal']"/>
<allowed-values
allow-other="yes">
<enum
Expand Down
4 changes: 2 additions & 2 deletions src/content/rev5/resources/xml/information-types.xml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
<?xml version="1.0" encoding="UTF-8"?>
<information-types xmlns="https://fedramp.gov/ns/oscal" uuid="3e1a4c8b-dcf1-405e-9e6f-3448dc60ef0b">
<information-types xmlns="http://fedramp.gov/ns/oscal" uuid="3e1a4c8b-dcf1-405e-9e6f-3448dc60ef0b">
<metadata>
<title>FedRAMP Acceptable Information Types (Experimental)</title>
<published>2024-09-24T02:24:00Z</published>
Expand All @@ -10,7 +10,7 @@
<revision>
<published>2023-06-30T00:00:00Z</published>
<version>DRAFT-01</version>
<prop name="party-uuid" ns="https://fedramp.gov/ns/oscal" value="660443b9-b985-4447-8443-8a05a8070ebe"/>
<prop name="party-uuid" ns="http://fedramp.gov/ns/oscal" value="660443b9-b985-4447-8443-8a05a8070ebe"/>
<remarks>
<p>Initial draft for fedramp-2.0.0-oscal-1.1.1 release.</p>
</remarks>
Expand Down
Loading

0 comments on commit 4398796

Please sign in to comment.