Better printing for patterns
- Created on .
Just a quick note to say that while progress has been slow lately due to the summer here in the Northern Hemisphere where the core team are located, we are still working according to the roadmap and you can expect to see some new patterns and other artifacts as we head into September and October.
It's not so much fun working on a PC after work when there are long evenings to be spent in the garden, playing with the children, and generally enjoying life :-)
I finally got round to finishing the draft of the data security pattern.
Fortunately (perhaps less so for the civil servants concerned) the UK government has had some major data protection issues of late, and consequently have issued some great guidance materials in the form the of Poynter and Hannigan reports, which I have used to form the backbone of the pattern.
Interested in getting a sense if you think this is a worthy architectural topic, and if this is a hot spot for you. We're planning to move this into the pattern section in the next couple of days.
Cheers,
Spinoza
At the recent OWASP Switzerland chapter meeting, I have presented OSA. We have got some positive and constructive feedback and look forward to more contributors :-). Most importantly we have heard again that also for security architecture pattern applies: "the more the merrier"
You can find the presentation here:
I've spent the last couple of days adding ISO17799 and COBIT mappings to the controls catalog. If you check any of the controls you will now see the mapping details at the bottom. You can also search for ISO or COBIT references using the search function in the menu bar to return a list of controls if you want to do a reverse lookup!
In the coming week I will also generate a table that lists controls and mappings in a single table.
We've been meaning to do this for a while now, but it's taken some time, as it made sense to get the underlying controls into a database so we can easily add mappings in future and regenerate the catalog really fast. Now the control catalog is in the database we can start to consider some neat tricks with web services and client side queries, which would allow us to start thinking about browser based design tools.
If you have any thoughts on additional mappings, or ways we could develop in the coming months let us know.