Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Local Validation Setup Instructions #629

Closed
16 tasks
Rene2mt opened this issue Aug 20, 2024 · 2 comments
Closed
16 tasks

Local Validation Setup Instructions #629

Rene2mt opened this issue Aug 20, 2024 · 2 comments
Assignees
Labels
enhancement New feature or request

Comments

@Rene2mt
Copy link
Member

Rene2mt commented Aug 20, 2024

This is a ...

improvement - something could be better

This relates to ...

  • the FedRAMP OSCAL Registry
  • the FedRAMP OSCAL baselines
  • the Guide to OSCAL-based FedRAMP Content
  • the Guide to OSCAL-based FedRAMP System Security Plans (SSP)
  • the Guide to OSCAL-based FedRAMP Security Assessment Plans (SAP)
  • the Guide to OSCAL-based FedRAMP Security Assessment Results (SAR)
  • the Guide to OSCAL-based FedRAMP Plan of Action and Milestones (POA&M)
  • the FedRAMP SSP OSCAL Template (JSON or XML Format)
  • the FedRAMP SAP OSCAL Template (JSON or XML Format)
  • the FedRAMP SAR OSCAL Template (JSON or XML Format)
  • the FedRAMP POA&M OSCAL Template (JSON or XML Format)

User Story

As a FedRAMP OSCAL content author, I need clear instructions on how to setup my local environment with FedRAMP provided validation tools (e.g., OSCAL-CLI, OSCAL-JS, etc.), so that I can ensure the OSCAL content I generate meets FedRAMP's requirements.

Goals

  • Documentation should be provided as Markdown files in the FedRAMP automation GitHub repository (and possibly referenced from FedRAMP Developer Hub site).
  • Documentation should provide example of how to do a standard validation (e.g., validation using core NIST Metaschema constraints)
  • Documentation should provide example of how to do FedRAMP specific validations (e.g., validation using external Metaschema constraint definitions)
  • Documentation should cover generating SARIF outputs and use in IDE
  • Documentation may provide examples of other useful capabilities (e.g., profile resolution)

Dependencies

No response

Acceptance Criteria

  • All FedRAMP Documents Related to OSCAL Adoption (https://github.com/GSA/fedramp-automation) affected by the changes in this issue have been updated.
  • A Pull Request (PR) is submitted that fully addresses the goals of this User Story. This issue is referenced in the PR.

Other information

No response

@Rene2mt
Copy link
Member Author

Rene2mt commented Aug 29, 2024

@aj-stein-gsa
Copy link
Contributor

Woops, close out in favor of #642.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
Archived in project
Development

No branches or pull requests

3 participants