-
Type: Task
-
Status: Closed
-
Priority: Major
-
Resolution: Duplicate
-
Component/s: Version control request
-
Labels:None
-
Environment:
OpenC2
Your name:
David Lemire
Project name:
Open Command and Control (OpenC2)
Project email address:
[1]openc2@lists.oasis-open.org
GitHub repository name:
openc2-ap-pac
Description
Open Command and Control (OpenC2) is a concise and extensible language to enable machine-to-machine communications for purposes of command and control of cyber defense components, subsystems, and systems in a manner that is agnostic of the underlying products, technologies, transport mechanisms, or other aspects of the implementation. This specification defines an actuator profile to automate collection of security posture attributes from virtual and physical computing resources using OpenC2. Security Posture Attribute Collection (PAC) supports security automation by providing mechanisms to collect and aggregate the configuration and status of network components for use in situational awareness, security posture evaluation, and response actions. This actuator profile defines the OpenC2 Actions, Targets, Arguments, and Specifiers along with conformance clauses to enable the operation of OpenC2 Producers and Consumers in the context of PAC. It covers identification of computing resources, definition of security-relevant resource attributes, and controlling the collection of those attributes using direct pull or event-based push mechanisms.
Purpose statement:
This repository supports the work of the OpenC2 TC in developing an Actuator Profile for security Posture Attribute Collection.
Maintainer(s):
David Lemire, david.lemire@hii-tsd.com, dlemire60
David Kemp, d.kemp@nsa.gov, @davaya
Duncan Sparrell, duncan@sfractal.com, sparrell
Michael Rosa, mjrosa@cyber.nsa.gov, mjrosa
Approval:
[2]https://www.oasis-open.org/committees/document.php?document_id=69736&wg_abbrev=openc2
Notes:
Repository approved at the March 2022 TC meeting, see section 4.2 of the linked minutes. A companion ticket has been submitted for a starter document.
----------------------------------------------------------------------------------------
[1] openc2@lists.oasis-open.org
[2] https://www.oasis-open.org/committees/document.php?document_id=69736&wg_abbrev=openc2