<?xml version="1.0" encoding="utf-8"?><feed xmlns="http://www.w3.org/2005/Atom"><generator uri="http://jekyllrb.com" version="3.2.1">Jekyll</generator><link href="https://scaponapple.github.io/feed.xml" rel="self" type="application/atom+xml" /><link href="https://scaponapple.github.io/" rel="alternate" type="text/html" /><updated>2016-09-07T00:55:43+00:00</updated><id>https://scaponapple.github.io/</id><title>SCAP on Apple</title><entry><title>[Reminder] Weekly Closing of Settings Review</title><link href="https://scaponapple.github.io/post/reminder-weekly-closing-of-settings-review/" rel="alternate" type="text/html" title="[Reminder] Weekly Closing of Settings Review" /><published>2013-06-03T18:09:48+00:00</published><updated>2013-06-03T18:09:48+00:00</updated><id>https://scaponapple.github.io/post/reminder-weekly-closing-of-settings-review</id><content type="html" xml:base="https://scaponapple.github.io/post/reminder-weekly-closing-of-settings-review/">&lt;p&gt;Just a reminder on the settings review process and curation.&lt;/p&gt;

&lt;p&gt;We have been posting &lt;strong&gt;blocks&lt;/strong&gt; of settings each as their on ticket for review, discussion, correction and agreement.&lt;/p&gt;

&lt;p&gt;We will closeout each block of settings tickets one week after they have been posted which should be long enough. If for any reasons, anyone feels the need for more time on any setting(s), please note that on a ticket or on the list and we will take action appropriately.&lt;/p&gt;

&lt;!--more--&gt;

&lt;p&gt;Tickets already created that will be closing out in the coming days..&lt;/p&gt;

&lt;hr /&gt;

&lt;p&gt;Created on: 5/29/13&lt;br /&gt;
Closing on: 06/05/13&lt;/p&gt;

&lt;ol&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/1&quot;&gt;[CCE-28300-2] idle_time_for_screen_saver&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/2&quot;&gt;[CCE-28301-0] sleep_restart_shutdown_buttons&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/3&quot;&gt;[CCE-28302-8] restart_button&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/4&quot;&gt;[CCE-28303-6] users_list_on_login&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/5&quot;&gt;[CCE-28304-4] other_users_list_on_login&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/6&quot;&gt;[CCE-28305-1] shutdown_button&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/7&quot;&gt;[CCE-28307-7] retries_until_hint&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/8&quot;&gt;[CCE-28308-5] inactivity_logout&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/9&quot;&gt;[CCE-28309-3] fast_user_switching&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/10&quot;&gt;[CCE-28306-9] sleep_button&lt;/a&gt;&lt;/li&gt;
&lt;/ol&gt;

&lt;hr /&gt;

&lt;p&gt;Created on: 6/03/13&lt;br /&gt;
Closing on: 06/10/13&lt;/p&gt;

&lt;ol&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/11&quot;&gt;[CCE-28310-1] console_login&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/12&quot;&gt;[CCE-28311-9] external_accounts&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/13&quot;&gt;[CCE-28312-7] admin_accounts&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/14&quot;&gt;[CCE-28313-5] local_user_accounts_visibility&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/15&quot;&gt;[CCE-28314-3] mobile_accounts_visibility&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/16&quot;&gt;[CCE-28315-0] network_users_visibility&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/17&quot;&gt;[CCE-28316-8] bash_init_files_owner&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/18&quot;&gt;[CCE-28317-6] bash_init_files_group&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/19&quot;&gt;[CCE-28318-4] bash_init_files_permissions&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/20&quot;&gt;[CCE-28319-2] csh_init_files_owner&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/21&quot;&gt;[CCE-28320-0] csh_init_files_group&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/22&quot;&gt;[CCE-28321-8] csh_init_files_permissions&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/23&quot;&gt;[CCE-28322-6] ftp_daemon&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/24&quot;&gt;[CCE-28323-4] rsh_daemon&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/25&quot;&gt;[CCE-28324-2] rexec_daemon&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/26&quot;&gt;[CCE-28325-9] telnet_daemon&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/27&quot;&gt;[CCE-28326-7] tftp_daemon&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/28&quot;&gt;[CCE-28327-5] http_daemon&lt;/a&gt;&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/ticket/29&quot;&gt;[CCE-28328-3] global_umask&lt;/a&gt;&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Please take the time to comment/contribute on the tickets, discuss on the list or provide general feedback prior to closing date for each block of settings.&lt;/p&gt;</content><summary>Just a reminder on the settings review process and curation.

We have been posting blocks of settings each as their on ticket for review, discussion, correction and agreement.

We will closeout each block of settings tickets one week after they have been posted which should be long enough. If for any reasons, anyone feels the need for more time on any setting(s), please note that on a ticket or on the list and we will take action appropriately.</summary></entry><entry><title>[Announce] Community-based Settings Curation for OSX &amp;amp; iOS</title><link href="https://scaponapple.github.io/post/announce-community-based-settings-curation-for-osx-ios/" rel="alternate" type="text/html" title="[Announce] Community-based Settings Curation for OSX &amp; iOS" /><published>2013-05-29T20:44:54+00:00</published><updated>2013-05-29T20:44:54+00:00</updated><id>https://scaponapple.github.io/post/announce-community-based-settings-curation-for-osx-ios</id><content type="html" xml:base="https://scaponapple.github.io/post/announce-community-based-settings-curation-for-osx-ios/">&lt;p&gt;&lt;strong&gt;SCAP-On-Apple User and Dev Community,&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;(cross-post to Fed-Talk Community)&lt;/p&gt;

&lt;p&gt;The day has &lt;strong&gt;&lt;em&gt;finally&lt;/em&gt;&lt;/strong&gt; come to begin digging in your heels with your shoulder to the grindstone!&lt;/p&gt;

&lt;p&gt;Several have been working hard behind the scenes, for several months now, to establish a bulk of the initial settings for OSX and iOS for public review, discussion, modifications and ultimately for approval and posting to the data feeds provided from this project. We have had some time and resource constraints that have negatively impacted our ability to reach this point on our original target date. Now, your wait is over and we can all dig in our heels and move this effort forward in a joint effort to bring the best and brightest together in a concerted effort for Settings Curation.&lt;/p&gt;

&lt;!--more--&gt;

&lt;p&gt;I wanted to give everyone a bit of structure and guidance on how we plan to proceed to maximize our time, talents and goals for this project.&lt;/p&gt;

&lt;p&gt;Flow of Settings Curation - Iterative Process&lt;/p&gt;

&lt;ol&gt;
  &lt;li&gt;Selection of the next BLOCK of settings [selection by SCAP Core Team]&lt;/li&gt;
  &lt;li&gt;Generation of a Ticket &lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/newticket&quot; title=&quot;New Ticket&quot;&gt;here&lt;/a&gt; for each setting  [for Tracking &amp;amp; Reference purposes]&lt;/li&gt;
  &lt;li&gt;Blog posting &lt;a href=&quot;https://scap-on-apple.macosforge.org/news&quot; title=&quot;Blog&quot;&gt;here&lt;/a&gt; of next Settings Block [announce posting of next block]&lt;/li&gt;
  &lt;li&gt;Daily Community Review &amp;amp; discussion &lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/wiki/MailingList&quot; title=&quot;Mailing Lists&quot;&gt;here&lt;/a&gt; [Community review/discussion via List]&lt;/li&gt;
  &lt;li&gt;Weekly Closeout of Review &lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/report/6&quot; title=&quot;Closed Out Tickets&quot;&gt;here&lt;/a&gt; [Tickets closed one week after creation]&lt;/li&gt;
  &lt;li&gt;Post Curated Settings to Repository &lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/browser&quot; title=&quot;Repository&quot;&gt;here&lt;/a&gt; [Post updated data repositories &amp;amp; feeds]&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;In addition to the users and developers in this community, this process will also have close involvement by individuals from NIST, NSA and SCAP Experts to ensure a solid review and submission process is accomplished.&lt;/p&gt;

&lt;h4 id=&quot;timing&quot;&gt;Timing&lt;/h4&gt;

&lt;p&gt;You will notice that we are targeting a weekly closeout of settings. This will give us a ‘rolling review’ and ONE FULL WEEK for review/feedback/modifications of each setting. We do not anticipate any setting requiring more time than that for vetting, but if it does, we will place the settings ticket on hold for later followup.&lt;/p&gt;

&lt;h4 id=&quot;cces&quot;&gt;CCEs&lt;/h4&gt;

&lt;p&gt;We plan to prefix the corresponding settings tickets with a designated CCE# which, among other things, will aid this community in long term tracking of activity and outcome for any given CCE / setting.&lt;/p&gt;

&lt;h4 id=&quot;data-feeds&quot;&gt;Data Feeds&lt;/h4&gt;

&lt;p&gt;The data feeds necessary for testing will also be pulled and hosted here as a ‘developing authoritative data feed’. Once we have completed our curated&lt;/p&gt;

&lt;p&gt;We have several hundred settings right now and anticipate throughout this process that some may be significantly modified, dropped, added or approved as is. Guidance is that you jump right in on areas you are most knowledgable on and then progress to those you are unfamiliar or interested in learning more about with community discussion.&lt;/p&gt;

&lt;h4 id=&quot;tool-vendors&quot;&gt;Tool Vendors&lt;/h4&gt;

&lt;p&gt;We encourage all tool vendors to participating and contribute validation feedback on all data tested from here against your own available tool sets. Right now this activity would be premature in the process, but keep this in mind for your organization’s resource planning.&lt;/p&gt;

&lt;p&gt;We want to Thank You all in advance for waiting on us for so long and for your willingness to actively engage in the SCAP-On-Apple Project.&lt;/p&gt;

&lt;p&gt;If for any reason you have questions or comments, please do not hesitate to send them directly to this list for community feedback as well. Contact / Admin email addresses are on the main wiki page - &lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/wiki&quot;&gt;https://scap-on-apple.macosforge.org/trac/wiki&lt;/a&gt;&lt;/p&gt;

&lt;ul&gt;
  &lt;li&gt;Project Admin&lt;/li&gt;
&lt;/ul&gt;</content><summary>SCAP-On-Apple User and Dev Community,

(cross-post to Fed-Talk Community)

The day has finally come to begin digging in your heels with your shoulder to the grindstone!

Several have been working hard behind the scenes, for several months now, to establish a bulk of the initial settings for OSX and iOS for public review, discussion, modifications and ultimately for approval and posting to the data feeds provided from this project. We have had some time and resource constraints that have negatively impacted our ability to reach this point on our original target date. Now, your wait is over and we can all dig in our heels and move this effort forward in a joint effort to bring the best and brightest together in a concerted effort for Settings Curation.</summary></entry><entry><title>Inaugural Meeting Oct 4, 2012</title><link href="https://scaponapple.github.io/post/inaugural-meeting-oct-4-2012/" rel="alternate" type="text/html" title="Inaugural Meeting Oct 4, 2012" /><published>2012-10-05T14:45:51+00:00</published><updated>2012-10-05T14:45:51+00:00</updated><id>https://scaponapple.github.io/post/inaugural-meeting-oct-4-2012</id><content type="html" xml:base="https://scaponapple.github.io/post/inaugural-meeting-oct-4-2012/">&lt;p&gt;The inaugural meeting on October 4, 2012 at the &lt;a href=&quot;http://itsac.g2planet.com/itsac2012/&quot;&gt;8th Annual IT Security Automation Conference&lt;/a&gt; in Baltimore, MD, marked the launch of the &lt;strong&gt;SCAP-On-Apple&lt;/strong&gt; Project here on MacOSForge.org.&lt;/p&gt;

&lt;p&gt;The &lt;strong&gt;SCAP-On-Apple&lt;/strong&gt; Project Team was very excited by the turnout yesterday with representatives from all sectors of the SCAP Community interested in immediately engaging in collaboration.&lt;/p&gt;

&lt;!--more--&gt;

&lt;p&gt;Those unable to attend in person will have plenty of opportunity to engage by jumping on the mailing lists and pulling our efforts together.&lt;/p&gt;

&lt;p&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/wiki/MailingList&quot;&gt;https://scap-on-apple.macosforge.org/trac/wiki/MailingList&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;Much can be accomplished by like minded people with laser focus.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The SCAP-On-Apple Team&lt;/strong&gt;&lt;/p&gt;</content><summary>The inaugural meeting on October 4, 2012 at the 8th Annual IT Security Automation Conference in Baltimore, MD, marked the launch of the SCAP-On-Apple Project here on MacOSForge.org.

The SCAP-On-Apple Project Team was very excited by the turnout yesterday with representatives from all sectors of the SCAP Community interested in immediately engaging in collaboration.</summary></entry><entry><title>“SCAP-On-Apple” Project Launch</title><link href="https://scaponapple.github.io/post/scap-on-apple-project-launch/" rel="alternate" type="text/html" title="&quot;SCAP-On-Apple&quot; Project Launch" /><published>2012-09-30T18:41:06+00:00</published><updated>2012-09-30T18:41:06+00:00</updated><id>https://scaponapple.github.io/post/scap-on-apple-project-launch</id><content type="html" xml:base="https://scaponapple.github.io/post/scap-on-apple-project-launch/">&lt;p&gt;The long wait is over! We are very excited to launch the &lt;strong&gt;SCAP-On-Apple&lt;/strong&gt; Project here on MacOSForge.org simultaneously with the first community gathering at the &lt;a href=&quot;http://itsac.g2planet.com/itsac2012/&quot;&gt;8th Annual IT Security Automation Conference&lt;/a&gt; in Baltimore, MD - October 3-5, 2012.&lt;/p&gt;

&lt;h3 id=&quot;mission&quot;&gt;Mission&lt;/h3&gt;

&lt;p&gt;The &lt;strong&gt;SCAP-On-Apple&lt;/strong&gt; Open Source Project engages and empowers the &lt;strong&gt;SCAP&lt;/strong&gt; community to strengthen the awareness, knowledge and collaboration on &lt;strong&gt;SCAP&lt;/strong&gt; Content, Tools and Solutions with authoritative data for the Apple Platforms &lt;a href=&quot;http://www.apple.com/osx/&quot;&gt;OSX&lt;/a&gt; and &lt;a href=&quot;http://www.apple.com/ios/&quot;&gt;iOS&lt;/a&gt;.&lt;/p&gt;

&lt;!--more--&gt;

&lt;h3 id=&quot;motivation&quot;&gt;Motivation&lt;/h3&gt;

&lt;p&gt;Managing patches and secure configurations of a large number of enterprise systems, while ensuring each one is compliant with security requirements, has become a daunting task for IT. The &lt;a href=&quot;http://csrc.nist.gov&quot;&gt;National Institute of Standards and Technology (NIST)&lt;/a&gt; is leading the charge in defining the standards, developing the specifications, and guiding the community in developing &lt;a href=&quot;http://scap.nist.gov&quot;&gt;SCAP&lt;/a&gt; content and deploying compliant tools for all platforms.&lt;/p&gt;

&lt;h3 id=&quot;guide-to-adopting-and-using-the-security-content-automation-protocol-scap-versions-12-draft&quot;&gt;Guide to Adopting and Using the Security Content Automation Protocol (SCAP) Versions 1.2 (DRAFT)&lt;/h3&gt;

&lt;p&gt;&lt;a href=&quot;http://csrc.nist.gov/publications/darfts/800-117-R1/Draft-SP800-117-r1.pdf&quot;&gt;Special Publication 800-117 Revision 1 (DRAFT)&lt;/a&gt;&lt;/p&gt;

&lt;h3 id=&quot;resources&quot;&gt;Resources&lt;/h3&gt;

&lt;p&gt;This Project’s goal is to &lt;strong&gt;augment&lt;/strong&gt; the existing SCAP Community efforts by focusing exclusively on relevant information for OSX and iOS. To facilitate the SCAP Community, the project will provide the following services hosted here under https://SCAP-On-Apple.MacOSForge.org/ :&lt;/p&gt;

&lt;ul&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/news&quot;&gt;Blog&lt;/a&gt; for timely announcements and updates&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/wiki&quot;&gt;Wiki&lt;/a&gt; for Information &amp;amp; Documentation&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/browser&quot;&gt;Source Repository&lt;/a&gt; for Source Repository hosting and versioning&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/wiki/MailingList&quot;&gt;Mailing Lists&lt;/a&gt; for community sharing&lt;/li&gt;
  &lt;li&gt;&lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/newticket&quot;&gt;Ticketing System&lt;/a&gt; for defects and enhancement submission and tracking&lt;/li&gt;
&lt;/ul&gt;

&lt;h3 id=&quot;bug--enhancement-ticket-system&quot;&gt;Bug / Enhancement Ticket System&lt;/h3&gt;

&lt;p&gt;The Project Team encourages all participants to fully utilize the &lt;a href=&quot;https://scap-on-apple.macosforge.org/trac/newticket&quot;&gt;Ticketing System&lt;/a&gt; to identify, submit, and track defects and enhancement requests against all content (wiki, documentation, tools, source code, etc.) maintained by this project.&lt;/p&gt;

&lt;p&gt;Jump into the project and engage!&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The SCAP-On-Apple Team&lt;/strong&gt;&lt;/p&gt;</content><summary>The long wait is over! We are very excited to launch the SCAP-On-Apple Project here on MacOSForge.org simultaneously with the first community gathering at the 8th Annual IT Security Automation Conference in Baltimore, MD - October 3-5, 2012.

Mission

The SCAP-On-Apple Open Source Project engages and empowers the SCAP community to strengthen the awareness, knowledge and collaboration on SCAP Content, Tools and Solutions with authoritative data for the Apple Platforms OSX and iOS.</summary></entry></feed>
