Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Editor revision for TC meeting 2025-02-26 #885

Open
wants to merge 78 commits into
base: master
Choose a base branch
from

Conversation

tschmidtb51 and others added 30 commits January 16, 2025 11:20
- addresses parts of #803
- add SSVC decision point value selection 1.0.1 to schema
- add SSVC decision point value selection 1.0.1 file into referenced schemas
- adapt test scripts
- addresses parts of #803
- add SSVC link in informative references
- mention SSVC in design consideration principles
- add SSVC to metrics section
- addresses parts of #803
- update SSVC key in schema to align with CVSS
- addresses parts of #803
- update referenced SSVC schema to reflect change from CERTCC/SSVC#654
- reformat JSON schema
- addresses parts of #803
- update referenced SSVC schema
- addresses parts of #803
- add SSVC to guidance on size
- update dates
- insert new revision for tracking
- resolves #831
- clarify text
- add informative explanation
- addresses review comment from #868
- clarify that DNS resolves to IP address which has the webserver

Co-authored-by: Stefan Hagen <[email protected]>
…to ssvc

- resolve conflict in guidance-on-size.md by correct sorting
- addresses parts of #803
- update link as indicated by CERT/CC
- addresses parts of #803
- add conversion rule
- addresses parts of #803
- add mandatory test 6.1.43 to detect inconsistent SSVC IDs
- add invalid examples
- add valid examples
- addresses parts of #803
- add SSVC schema to testscript for test data
- addresses parts of #803
- add mandatory test 6.1.44 for SSVC
- add invalid examples
- add valid examples
- addresses parts of #803
- correct that 6.1.43 and 6.1.44 just have a single relevant path, not multiple
- addresses parts of #803
- add mandatory test 6.1.45 for SSVC Decision Point Namespace
- add invalid examples
- add valid examples
- addresses parts of #803
- add informative test 6.3.13 for Non-Latest SSVC decision point version
- add invalid example
- add valid example
- addresses parts of #803
- add optional test 6.2.33 for unknown SSVC namespaces
- add invalid example
- add valid example
- addresses parts of #803
- improve wording by using registered namespaces instead of reserved
- addresses parts of #803
- add optional test 6.2.34 for unknown SSVC roles
- add invalid example
- add valid example
- addresses parts of #803
- update with latest developments from SSVC
- addresses parts of #847
- correct default open behavior of model and serial number
- addresses parts of #847
- clarify multiple `*` should be avoided
- introduce escaping
- addresses parts of #847
- add conversion rules
- addresses review comment from #871
- unify formatting
- sort list lexiographically
- addresses parts of #847
- tighten definition: prohibit multiple stars
- adapt conversion rule
tschmidtb51 and others added 16 commits February 28, 2025 19:27
- addresses parts of #782
- add 6.1.45 to bind.txt
- addresses parts of #782
- add invalid timezone example for 6.1.45
- add valid timezone example for 6.1.45
- add invalid timezone example for 6.2.33
- add valid timezone example for 6.2.33
- addresses parts of #782, #469
- add invalid examples for 6.1.37 (leap second and year)
- add valid examples for 6.1.37 (leap second and year)
- addresses parts of #469
- correct filename
- exclude leap seconds files from testing
- exclude invalid date-time format from testing
- addresses parts of #803
- prepare merge from editor-revision-2025-02-26
- rename tests
- adapt test data
- addresses parts of #803
- update referenced schemas for SSVC
- addresses parts of #803
- adapt test 6.1.48 to reflect registered namespaces
- add invalid examples for namespace `cvss`
- add valid examples for namespace `cvss`
- addresses parts of #803
- add test 6.1.46 for invalid ssvc
- add invalid examples
- add valid examples
- addresses parts of #803
- add test 6.1.49 for inconsistent SSVC timestamp
- add invalid examples
- add valid examples
@tschmidtb51 tschmidtb51 added editor-revision already worked on in the editor revision csaf 2.1 csaf 2.1 work labels Mar 4, 2025
@tschmidtb51 tschmidtb51 requested a review from sthagen March 4, 2025 16:42
@tschmidtb51 tschmidtb51 self-assigned this Mar 4, 2025
sthagen and others added 5 commits March 4, 2025 17:56
Signed-off-by: Stefan Hagen <[email protected]>
- completed section mappings
- completed example mappings
- generated user facing derlivery items

Signed-off-by: Stefan Hagen <[email protected]>
- included fix of a nit around key value semantics in json

Signed-off-by: Stefan Hagen <[email protected]>
Copy link
Contributor

@sthagen sthagen left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM - Ship it!

@tschmidtb51
Copy link
Contributor Author

A motion has been set by Thomas Schmidt: https://groups.oasis-open.org/discussion/motion-for-885

@tschmidtb51 tschmidtb51 added the motion This item has a motion pending label Mar 5, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment