Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

FedRAMP Profiles Uses Vendored Media Types Not Conformant with OSCAL & IANA Media Type Specification #232

Closed
aj-stein-nist opened this issue Jun 10, 2022 · 1 comment · Fixed by #540
Labels
bug Something isn't working scope: baselines

Comments

@aj-stein-nist
Copy link

Describe the bug

Per usnistgov/OSCAL#1255, the media types are not used in profiles and other example content with a vendored type format are not conformant with OSCAL guidance or the linked IANA specification strongly recommended for OSCAL usage. application/oscal.modelname+dataformat is invalid, while application/oscal+dataformat is acceptable.

Who is the bug affecting?

OSCAL tool developers

What version of OSCAL are you using? (Check our info on supported OSCAL versions)

v1.0.0 to v1.0.4 inclusive

What is affected by this bug?

Processing of OSCAL content with back-matter resources that have media-types defined for their links.

When does this occur?

Consistently.

How do we replicate the issue?

  1. Review media-type usage in current FedRAMP profiles and how they define media-types, such as this link or another link

Expected behavior (i.e. solution)

These are modified to be application/oscal+json and application/oscal+yaml respectively.

Other Comments

N/A

@aj-stein-nist aj-stein-nist added the bug Something isn't working label Jun 10, 2022
@aj-stein-nist
Copy link
Author

/cc @volpet2014 and @Rene2mt, as this came up in model updates meeting (tracked in usnistgov/OSCAL#1066) and I took an action item to relay it back to FedRAMP, potentially assisting them with correcting this minor bug.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working scope: baselines
Projects
Archived in project
3 participants