oasis-open / csaf-documentation

OASIS TC Open Repository: A GitHub repository for management of non-normative information about the work of the CSAF Technical Committee, including documentation
https://oasis-open.github.io/csaf-documentation/
BSD 3-Clause "New" or "Revised" License
19 stars 11 forks source link

Add `Clouditor` to tools #58

Closed oxisto closed 1 month ago

oxisto commented 5 months ago

We have recently introduced support for the conformance check of CSAF (trusted) providers into our clouditor compliance platform. See https://github.com/clouditor/clouditor/issues/1414 for more information. We have also provided a small quick start in our README how to do it in https://github.com/clouditor/clouditor?tab=readme-ov-file#quickstart-with-ui.

There are some limitations, e.g. currently all available documents are scanned for integrity/TLS, etc. This might take too much time for large providers. We are aware of this issue (see https://github.com/clouditor/clouditor/issues/1453, https://github.com/clouditor/clouditor/issues/1454)

CLAassistant commented 5 months ago

CLA assistant check
All committers have signed the CLA.