Repository to demo oscal based component definitions and agile authoring using compliance-trestle and github actions
The demo overview.
-
Input: It was initialized with OSCAL catalog.json, profile.json, Ubuntu yml from ComplianceAsCode, and control selections specified in spread sheets.
-
Processing: Changes to any of the input files will cause regeneration of the
softwareandvalidationcomponent definitions. -
Output: Updated component-definition.json files in component-definition repo
-
Next action: Updated component-definition.json files pushed to ssp repo
Demo for this repo:
- Show changes to spread sheet (delete control, re-add control) are incorporated into component-definition.json files