Skip to content

Correction patch to SP800-53 catalog#229

Merged
david-waltermire merged 1 commit intousnistgov:masterfrom
wendellpiez:hotfix-catalog-correction
Sep 25, 2018
Merged

Correction patch to SP800-53 catalog#229
david-waltermire merged 1 commit intousnistgov:masterfrom
wendellpiez:hotfix-catalog-correction

Conversation

@wendellpiez
Copy link
Contributor

A new OSCAL draft catalog corrects a problematic (semantically consequential) bug in the OSCAL SP800-53 catalog, where a "withdrawn" status (property) was being misattributed to controls that are not withdrawn, but only have enhancements associated that are (happen to be) withdrawn.

Otherwise it makes no changes outside of a new timestamp (in the header comment) and document ID (uuid).

Committer Notes

This PR should finally align with the upstream master. It replaces withdrawn PR #228, which replaced PR #227. (Slowly, I am figuring out the git bits.)

All Submissions:

Changes to Core Features:

Removed <prop class="status">Withdrawn</prop> from controls not designated as "Withdrawn" in the NVD source data. Without this correction the OSCAL is wrong.

The production pipeline that produces the catalog (not maintained in this branch) has also been updated so the correction will stick.

…' to controls containing withdrawn control enhancements
Copy link
Contributor

@david-waltermire david-waltermire left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good. Thanks for these corrections.

@david-waltermire david-waltermire merged commit fe8ab49 into usnistgov:master Sep 25, 2018
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants