Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

AWS Security Hub and Config Controls #18

Open
xee5ch opened this issue Oct 9, 2023 · 1 comment · May be fixed by #19
Open

AWS Security Hub and Config Controls #18

xee5ch opened this issue Oct 9, 2023 · 1 comment · May be fixed by #19

Comments

@xee5ch
Copy link
Contributor

xee5ch commented Oct 9, 2023

As a more applicable alternative to #8, a catalog of controls for AWS Config and Security Hub integration specific to AWS, related back to other common control frameworks.

https://docs.aws.amazon.com/securityhub/latest/userguide/securityhub-controls-reference.html

There is a RSS feed for updates, but no structured, machine-readable format for all content as-is to convert into OSCAL catalogs except HTML. It will be necessary to build a parser for each page and a wrapper crawler to look at the index of service controls and recursively process the OSCAL catalogs.

@xee5ch
Copy link
Contributor Author

xee5ch commented Oct 10, 2023

I made initial progress today after testing and abandoning scrapy. I have figured out just enough of XPath to filter control data. I am just wrapping up the glue code from the site spidering to the transform functions to generate OSCAL catalogs and profiles

More to follow.

xee5ch added a commit that referenced this issue Oct 14, 2023
@xee5ch xee5ch linked a pull request Oct 14, 2023 that will close this issue
@xee5ch xee5ch linked a pull request Oct 14, 2023 that will close this issue
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant