From 41fb6d73e23fa7b64ae2b9da185b22d0e91c68ad Mon Sep 17 00:00:00 2001 From: adammontville Date: Tue, 22 Aug 2017 11:35:49 -0500 Subject: [PATCH] Rename "ietf_99_hackathon" Making our hackathon directory more generic --- ..._vulnerability_libtasn1_CVE-2017-10790.txt | 273 ----------------- ...n_vulnerability_ncurses_CVE-2017-10685.txt | 289 ------------------ ietf_99_hackathon/strongTNC_REST_API.txt | 220 ------------- .../CVE-2016-8740-oval.xml | 0 .../CVE-2017-6891-oval.xml | 0 .../README.md | 0 .../graphics/Hackathon Deployment.vsdx | Bin .../graphics/hackathon_deployment.graffle | Bin .../graphics/hackathon_deployment.png | Bin .../graphics/hackathon_deployment.vdx | 0 .../hackathon_deployment_alternative.png | Bin .../hackathon_deployment_combined.graffle | Bin .../hackathon_deployment_combined.png | Bin .../data.plist | Bin ...rability_scenario_sequence_diagram.graffle | 0 ...ulnerability_scenario_sequence_diagram.png | Bin ...ulnerability_scenario_sequence_diagram.vdx | 0 ...nario_sequence_diagram_implemented.graffle | 0 .../rolieURLs | 0 .../sacm-entry-oval-definitions.xml | 0 20 files changed, 782 deletions(-) delete mode 100644 ietf_99_hackathon/hackathon_vulnerability_libtasn1_CVE-2017-10790.txt delete mode 100644 ietf_99_hackathon/hackathon_vulnerability_ncurses_CVE-2017-10685.txt delete mode 100644 ietf_99_hackathon/strongTNC_REST_API.txt rename {ietf_99_hackathon => ietf_hackathon}/CVE-2016-8740-oval.xml (100%) rename {ietf_99_hackathon => ietf_hackathon}/CVE-2017-6891-oval.xml (100%) rename {ietf_99_hackathon => ietf_hackathon}/README.md (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/Hackathon Deployment.vsdx (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/hackathon_deployment.graffle (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/hackathon_deployment.png (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/hackathon_deployment.vdx (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/hackathon_deployment_alternative.png (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/hackathon_deployment_combined.graffle (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/hackathon_deployment_combined.png (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/hackathon_deployment_original.graffle/data.plist (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/vulnerability_scenario_sequence_diagram.graffle (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/vulnerability_scenario_sequence_diagram.png (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/vulnerability_scenario_sequence_diagram.vdx (100%) rename {ietf_99_hackathon => ietf_hackathon}/graphics/vulnerability_scenario_sequence_diagram_implemented.graffle (100%) rename {ietf_99_hackathon => ietf_hackathon}/rolieURLs (100%) rename {ietf_99_hackathon => ietf_hackathon}/sacm-entry-oval-definitions.xml (100%) diff --git a/ietf_99_hackathon/hackathon_vulnerability_libtasn1_CVE-2017-10790.txt b/ietf_99_hackathon/hackathon_vulnerability_libtasn1_CVE-2017-10790.txt deleted file mode 100644 index 2927176..0000000 --- a/ietf_99_hackathon/hackathon_vulnerability_libtasn1_CVE-2017-10790.txt +++ /dev/null @@ -1,273 +0,0 @@ ------------------------------------------------------------------------------------------------- -libtasn1: https://nvd.nist.gov/vuln/detail/CVE-2017-10790 - -libtasn1 2.0..4.12 https://bugzilla.redhat.com/show_bug.cgi?id=1464141 - -Debian 8.0: libtasn1-6 4.2-3+deb8u2, 4.2-3+deb8u3 vulnerable - -Ubuntu 16.04: libtasn1-6 4.7-3, 4.7-3ubuntu0.16.04.2 vulnerable - -strongTNC queries: - -The query for package name "ncurses-bin" returns five SWID tags. All tags descripe libtasn1 -versions that are vulnerable, two for Debian 8.0 armv7l and three for Ubuntu 16.04 x86_64. - -https://tnc.example.com/api/swid-tags/?package_name=libtasn1-6&fields=id,uri,software_id,package_name,version -[ - { - "id": 5727, - "uri": "https://tnc.example.com/api/swid-tags/5727/", - "packageName": "libtasn1-6", - "version": "4.2-3+deb8u2", - "softwareId": "strongswan.org__Debian_8.0-armv7l-libtasn1-6-4.2-3~deb8u2" - }, - { - "id": 6587, - "uri": "https://tnc.example.com/api/swid-tags/6587/", - "packageName": "libtasn1-6", - "version": "4.2-3+deb8u3", - "softwareId": "strongswan.org__Debian_8.0-armv7l-libtasn1-6-4.2-3~deb8u3" - }, - { - "id": 1979, - "uri": "https://tnc.example.com/api/swid-tags/1979/", - "packageName": "libtasn1-6", - "version": "4.7-3", - "softwareId": "strongswan.org__Ubuntu_16.04-x86_64-libtasn1-6-4.7-3" - }, - { - "id": 1124, - "uri": "https://tnc.example.com/api/swid-tags/1124/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.1", - "softwareId": "strongswan.org__Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.1" - }, - { - "id": 2248, - "uri": "https://tnc.example.com/api/swid-tags/2248/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.2", - "softwareId": "strongswan.org__Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.2" - } -] - -In the new "swid-stats" strongTNC branch on github a shortcut on tag events -is available through the query - -https://tnc.example.com/api/swid-stats/?tag__package_name=libtasn1-6 -[ - { - "tag": { - "id": 1124, - "uri": "https://tnc.example.com/api/swid-tags/1124/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.1", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.1" - }, - "device": "https://tnc.example.com/api/devices/1/", - "firstSeen": "https://tnc.example.com/api/sessions/1/", - "lastSeen": "https://tnc.example.com/api/sessions/2/", - "firstInstalled": "https://tnc.example.com/api/swid-events/2/", - "lastDeleted": "https://tnc.example.com/api/swid-events/21/" - }, - { - "tag": { - "id": 1124, - "uri": "https://tnc.example.com/api/swid-tags/1124/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.1", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.1" - }, - "device": "https://tnc.example.com/api/devices/2/", - "firstSeen": "https://tnc.example.com/api/sessions/4/", - "lastSeen": "https://tnc.example.com/api/sessions/4/", - "firstInstalled": "https://tnc.example.com/api/swid-events/23/", - "lastDeleted": "https://tnc.example.com/api/swid-events/238/" - }, - { - "tag": { - "id": 1124, - "uri": "https://tnc.example.com/api/swid-tags/1124/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.1", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.1" - }, - "device": "https://tnc.example.com/api/devices/3/", - "firstSeen": "https://tnc.example.com/api/sessions/6/", - "lastSeen": "https://tnc.example.com/api/sessions/6/", - "firstInstalled": "https://tnc.example.com/api/swid-events/278/", - "lastDeleted": "https://tnc.example.com/api/swid-events/417/" - }, - { - "tag": { - "id": 1979, - "uri": "https://tnc.example.com/api/swid-tags/1979/", - "packageName": "libtasn1-6", - "version": "4.7-3", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3" - }, - "device": "https://tnc.example.com/api/devices/1/", - "firstSeen": "https://tnc.example.com/api/sessions/1/", - "lastSeen": "https://tnc.example.com/api/sessions/1/", - "firstInstalled": "https://tnc.example.com/api/swid-events/1/", - "lastDeleted": "https://tnc.example.com/api/swid-events/2/" - }, - { - "tag": { - "id": 1979, - "uri": "https://tnc.example.com/api/swid-tags/1979/", - "packageName": "libtasn1-6", - "version": "4.7-3", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3" - }, - "device": "https://tnc.example.com/api/devices/3/", - "firstSeen": "https://tnc.example.com/api/sessions/6/", - "lastSeen": "https://tnc.example.com/api/sessions/6/", - "firstInstalled": "https://tnc.example.com/api/swid-events/276/", - "lastDeleted": "https://tnc.example.com/api/swid-events/278/" - }, - { - "tag": { - "id": 2248, - "uri": "https://tnc.example.com/api/swid-tags/2248/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.2", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.2" - }, - "device": "https://tnc.example.com/api/devices/1/", - "firstSeen": "https://tnc.example.com/api/sessions/2/", - "lastSeen": "https://tnc.example.com/api/sessions/2/", - "firstInstalled": "https://tnc.example.com/api/swid-events/21/", - "lastDeleted": null - }, - { - "tag": { - "id": 2248, - "uri": "https://tnc.example.com/api/swid-tags/2248/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.2", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.2" - }, - "device": "https://tnc.example.com/api/devices/2/", - "firstSeen": "https://tnc.example.com/api/sessions/4/", - "lastSeen": "https://tnc.example.com/api/sessions/4/", - "firstInstalled": "https://tnc.example.com/api/swid-events/238/", - "lastDeleted": null - }, - { - "tag": { - "id": 2248, - "uri": "https://tnc.example.com/api/swid-tags/2248/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.2", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.2" - }, - "device": "https://tnc.example.com/api/devices/3/", - "firstSeen": "https://tnc.example.com/api/sessions/6/", - "lastSeen": "https://tnc.example.com/api/sessions/6/", - "firstInstalled": "https://tnc.example.com/api/swid-events/417/", - "lastDeleted": null - }, - { - "tag": { - "id": 5727, - "uri": "https://tnc.example.com/api/swid-tags/5727/", - "packageName": "libtasn1-6", - "version": "4.2-3+deb8u2", - "uniqueId": "Debian_8.0-armv7l-libtasn1-6-4.2-3~deb8u2" - }, - "device": "https://tnc.example.com/api/devices/4/", - "firstSeen": "https://tnc.example.com/api/sessions/11/", - "lastSeen": "https://tnc.example.com/api/sessions/11/", - "firstInstalled": "https://tnc.example.com/api/swid-events/445/", - "lastDeleted": "https://tnc.example.com/api/swid-events/478/" - }, - { - "tag": { - "id": 6587, - "uri": "https://tnc.example.com/api/swid-tags/6587/", - "packageName": "libtasn1-6", - "version": "4.2-3+deb8u3", - "uniqueId": "Debian_8.0-armv7l-libtasn1-6-4.2-3~deb8u3" - }, - "device": "https://tnc.example.com/api/devices/4/", - "firstSeen": "https://tnc.example.com/api/sessions/11/", - "lastSeen": "https://tnc.example.com/api/sessions/11/", - "firstInstalled": "https://tnc.example.com/api/swid-events/478/", - "lastDeleted": null - } -] - -which directly gives the vulnerable devices with the package installation -and [optional] removal events. Additionally the 'tag__version' filter -could be used to search for a given version as in - -https://tnc.example.com/api/swid-stats/?tag__package_name=libtasn1-6&tag__version=4.7-3ubuntu0.16.04.2 -[ - { - "tag": { - "id": 2248, - "uri": "https://tnc.example.com/api/swid-tags/2248/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.2", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.2" - }, - "device": "https://tnc.example.com/api/devices/1/", - "firstSeen": "https://tnc.example.com/api/sessions/2/", - "lastSeen": "https://tnc.example.com/api/sessions/2/", - "firstInstalled": "https://tnc.example.com/api/swid-events/21/", - "lastDeleted": null - }, - { - "tag": { - "id": 2248, - "uri": "https://tnc.example.com/api/swid-tags/2248/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.2", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.2" - }, - "device": "https://tnc.example.com/api/devices/2/", - "firstSeen": "https://tnc.example.com/api/sessions/4/", - "lastSeen": "https://tnc.example.com/api/sessions/4/", - "firstInstalled": "https://tnc.example.com/api/swid-events/238/", - "lastDeleted": null - }, - { - "tag": { - "id": 2248, - "uri": "https://tnc.example.com/api/swid-tags/2248/", - "packageName": "libtasn1-6", - "version": "4.7-3ubuntu0.16.04.2", - "uniqueId": "Ubuntu_16.04-x86_64-libtasn1-6-4.7-3ubuntu0.16.04.2" - }, - "device": "https://tnc.example.com/api/devices/3/", - "firstSeen": "https://tnc.example.com/api/sessions/6/", - "lastSeen": "https://tnc.example.com/api/sessions/6/", - "firstInstalled": "https://tnc.example.com/api/swid-events/417/", - "lastDeleted": null - } -] - -or since version numbers are usually dependent on the Linux distribution -the filter 'tag__unique_id' could be used as well: - -https://tnc.example.com/api/swid-stats/?tag__unique_id=Debian_8.0-armv7l-libtasn1-6-4.2-3~deb8u3 -[ - { - "tag": { - "id": 6587, - "uri": "https://tnc.example.com/api/swid-tags/6587/", - "packageName": "libtasn1-6", - "version": "4.2-3+deb8u3", - "uniqueId": "Debian_8.0-armv7l-libtasn1-6-4.2-3~deb8u3" - }, - "device": "https://tnc.example.com/api/devices/4/", - "firstSeen": "https://tnc.example.com/api/sessions/11/", - "lastSeen": "https://tnc.example.com/api/sessions/11/", - "firstInstalled": "https://tnc.example.com/api/swid-events/478/", - "lastDeleted": null - } -] - ------------------------------------------------------------------------------------------------- - diff --git a/ietf_99_hackathon/hackathon_vulnerability_ncurses_CVE-2017-10685.txt b/ietf_99_hackathon/hackathon_vulnerability_ncurses_CVE-2017-10685.txt deleted file mode 100644 index 50d127e..0000000 --- a/ietf_99_hackathon/hackathon_vulnerability_ncurses_CVE-2017-10685.txt +++ /dev/null @@ -1,289 +0,0 @@ ------------------------------------------------------------------------------------------------- -Ncurses: https://nvd.nist.gov/vuln/detail/CVE-2017-10685 - -ncurses 6.0 https://bugzilla.redhat.com/show_bug.cgi?id=1464692 - -Debian 8.0: ncurses-bin 5.9+20140913-1 vulnerable (usr/bin/infotocap) - ncurses-bin 6.0+20170701-1 fixed - -Ubuntu 16.04: ncurses-bin 6.0+20160213-1ubuntu1 vulnerable (usr/bin/infotocap) - -strongTNC queries: - -The query for package name "ncurses-bin" returns two SWID tags. Both tags descripe ncurses -versions that are vulnerable, one for Debian 8.0 armv7l and one for Ubuntu 16.04 x86_64. -There are only installation events (action=1), one for Debian and three events for Ubuntu, -so that the vulnerability hasn't been fixed yet: - -https://tnc.example.com/api/swid-tags/?package_name=ncurses-bin&fields=uri,software_id,package_name,version,events -[ - { - "uri": "https://tnc.example.com/api/swid-tags/5906/", - "packageName": "ncurses-bin", - "version": "5.9+20140913-1", - "softwareId": "strongswan.org__Debian_8.0-armv7l-ncurses-bin-5.9~20140913-1", - "events": [ - { - "event": "https://tnc.example.com/api/swid-events/445/", - "action": 1, - "recordId": 1500, - "sourceId": 1 - } - ] - }, - { - "uri": "https://tnc.example.com/api/swid-tags/1357/", - "packageName": "ncurses-bin", - "version": "6.0+20160213-1ubuntu1", - "softwareId": "strongswan.org__Ubuntu_16.04-x86_64-ncurses-bin-6.0~20160213-1ubuntu1", - "events": [ - { - "event": "https://tnc.example.com/api/swid-events/1/", - "action": 1, - "recordId": 2013, - "sourceId": 1 - }, - { - "event": "https://tnc.example.com/api/swid-events/23/", - "action": 1, - "recordId": 3210, - "sourceId": 1 - }, - { - "event": "https://tnc.example.com/api/swid-events/276/", - "action": 1, - "recordId": 3799, - "sourceId": 1 - } - ] - } -] - -The XML-encoding of the SWID tags can be retrieved with the query - -https://tnc.example.com/api/swid-tags/?package_name=ncurses-bin&fields=swid_xml -[ - { - "swidXml": - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - }, - { - "swidXml": - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - } -] - -Both SWID tags show that the vulnerable executable "/usr/bin/infotocap" has been -distributed with these software packages. - -The retrieval of the installation events returns four distinct endpoint devices -and shows the respective installation date of the vulnerable version: - -https://tnc.example.com/api/swid-events/445/?fields=device,timestamp -{ - "device": "https://tnc.example.com/api/devices/4/", - "timestamp": "2016-05-27T11:06:15Z" -} - -https://tnc.example.com/api/swid-events/1/?fields=device,timestamp -{ - "device": "https://tnc.example.com/api/devices/1/", - "timestamp": "2017-02-15T20:20:34Z" -} - -https://tnc.example.com/api/swid-events/23/?fields=device,timestamp -{ - "device": "https://tnc.example.com/api/devices/2/", - "timestamp": "2016-08-29T21:56:52Z" -} - -https://tnc.example.com/api/swid-events/276/?fields=device,timestamp -{ - "device": "https://tnc.example.com/api/devices/3/", - "timestamp": "2016-04-22T20:55:14Z" -} - -In a next step we retrieve the unique hardware ID and the description -of the four vulnerable endpoints: - -https://tnc.example.com/api/devices/4/?fields=value,description,product -{ - "value": "71497c4241e7c681bc3173f00f7e4ae12d530038", - "description": "Raspi 5", - "product": { - "id": 86, - "uri": "https://tnc.example.com/api/products/86/", - "name": "Debian 8.0 armv7l" - } -} - -https://tnc.example.com/api/devices/1/?fields=value,description,product -{ - "value": "f57bfabdbaf9729133910d70c5903612301cf325", - "description": "SWIMA Client 1", - "product": { - "id": 75, - "uri": "https://tnc.example.com/api/products/75/", - "name": "Ubuntu 16.04 x86_64" - } -} - -https://tnc.example.com/api/devices/2/?fields=value,description,product -{ -{ - "value": "108fcf6d0d6a79ee529a627ba37c234717f0249c", - "description": "Intel NUC", - "product": { - "id": 75, - "uri": "https://tnc.example.com/api/products/75/", - "name": "Ubuntu 16.04 x86_64" - } -} - -https://tnc.example.com/api/devices/3/?fields=value,description,product -{ - "value": "5d95021396d2415e5c53ca2dea6fbc1c2387c56a", - "description": "Lenovo Thinkpad", - "product": { - "id": 75, - "uri": "https://tnc.example.com/api/products/75/", - "name": "Ubuntu 16.04 x86_64" - } -} - -As a shortcut there is a concise summary on tag events available with the query - -https://tnc.example.com/api/swid-stats/?tag=5906 -[ - { - "tag": "https://tnc.example.com/api/swid-tags/5906/", - "device": "https://tnc.example.com/api/devices/4/", - "firstSeen": "https://tnc.example.com/api/sessions/11/", - "lastSeen": "https://tnc.example.com/api/sessions/11/", - "firstInstalled": "https://tnc.example.com/api/swid-events/445/", - "lastDeleted": null - } -] - -https://tnc.example.com/api/swid-stats/?tag=1357 -[ - { - "tag": "https://tnc.example.com/api/swid-tags/1357/", - "device": "https://tnc.example.com/api/devices/1/", - "firstSeen": "https://tnc.example.com/api/sessions/1/", - "lastSeen": "https://tnc.example.com/api/sessions/1/", - "firstInstalled": "https://tnc.example.com/api/swid-events/1/", - "lastDeleted": null - }, - { - "tag": "https://tnc.example.com/api/swid-tags/1357/", - "device": "https://tnc.example.com/api/devices/2/", - "firstSeen": "https://tnc.example.com/api/sessions/4/", - "lastSeen": "https://tnc.example.com/api/sessions/4/", - "firstInstalled": "https://tnc.example.com/api/swid-events/23/", - "lastDeleted": null - }, - { - "tag": "https://tnc.example.com/api/swid-tags/1357/", - "device": "https://tnc.example.com/api/devices/3/", - "firstSeen": "https://tnc.example.com/api/sessions/6/", - "lastSeen": "https://tnc.example.com/api/sessions/6/", - "firstInstalled": "https://tnc.example.com/api/swid-events/276/", - "lastDeleted": null - } -] - -which directly gives the vulnerable devices with the package installation -and [optional] removal events. - ------------------------------------------------------------------------------------------------- - diff --git a/ietf_99_hackathon/strongTNC_REST_API.txt b/ietf_99_hackathon/strongTNC_REST_API.txt deleted file mode 100644 index 55460ed..0000000 --- a/ietf_99_hackathon/strongTNC_REST_API.txt +++ /dev/null @@ -1,220 +0,0 @@ -------------------------------------------------------------------------------- -SWID tags of all "openssl" package versions: - -https://tnc.strongswan.org/api/swid-tags/?package_name=openssl&fields=id,package_name,version,unique_id - -[ - { - "id": 3861, - "packageName": "openssl", - "version": "1.0.1f-1ubuntu2.18", - "uniqueId": "Ubuntu_14.04-x86_64-openssl-1.0.1f-1ubuntu2.18" - }, - { - "id": 4628, - "packageName": "openssl", - "version": "1.0.1f-1ubuntu2.22", - "uniqueId": "Ubuntu_14.04-x86_64-openssl-1.0.1f-1ubuntu2.22" - }, - { - "id": 1694, - "packageName": "openssl", - "version": "1.0.2g-1ubuntu4.6", - "uniqueId": "Ubuntu_16.04-x86_64-openssl-1.0.2g-1ubuntu4.6" - }, - { - "id": 4883, - "packageName": "openssl", - "version": "1.0.2g-1ubuntu4.8", - "uniqueId": "Ubuntu_16.04-x86_64-openssl-1.0.2g-1ubuntu4.8" - } -] - -------------------------------------------------------------------------------- -SWID tag with tagID "Ubuntu_16.04-x86_64-openssl-1.0.2g-1ubuntu4.8": - -https://tnc.strongswan.org/api/swid-tags/?unique_id=Ubuntu_16.04-x86_64-openssl-1.0.2g-1ubuntu4.8&fields=id,package_name,version,unique_id - -[ - { - "id": 4883, - "packageName": "openssl", - "version": "1.0.2g-1ubuntu4.8", - "uniqueId": "Ubuntu_16.04-x86_64-openssl-1.0.2g-1ubuntu4.8" - } -] - -------------------------------------------------------------------------------- -SWID tag with primary key "4883": - -https://tnc.strongswan.org/api/swid-tags/4883/?fields=package_name,version,unique_id - -{ - "packageName": "openssl", - "version": "1.0.2g-1ubuntu4.8", - "uniqueId": "Ubuntu_16.04-x86_64-openssl-1.0.2g-1ubuntu4.8" -} - -------------------------------------------------------------------------------- -All devices which used software with SWID tag "4883" at some time: - -https://tnc.strongswan.org/api/swid-stats/?tag=4883 - -[ - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4883/", - "device": "https://tnc.strongswan.org/api/devices/1/", - "firstSeen": "https://tnc.strongswan.org/api/sessions/40/", - "lastSeen": "https://tnc.strongswan.org/api/sessions/41/" - } -] - -------------------------------------------------------------------------------- -Information on device "1": - -https://tnc.strongswan.org/api/devices/1/ - -{ - "id": 1, - "uri": "https://tnc.strongswan.org/api/devices/1/", - "value": "5d95021396d2415e5c53ca2dea6fbc1c2387c56a", - "description": "Lenovo ECC", - "product": { - "id": 75, - "uri": "https://tnc.strongswan.org/api/products/75/", - "name": "Ubuntu 16.04 x86_64" - }, - "created": "2017-04-19T20:20:41Z", - "trusted": 1 -} - -------------------------------------------------------------------------------- -All devices which used software with SWID tag "4628" at some time: - -https://tnc.strongswan.org/api/swid-stats/?tag=4628&fields=device,first_seen,last_seen - -[ - { - "device": "https://tnc.strongswan.org/api/devices/2/", - "firstSeen": "https://tnc.strongswan.org/api/sessions/19/", - "lastSeen": "https://tnc.strongswan.org/api/sessions/39/" - } -] - -------------------------------------------------------------------------------- -Information on device "2": - -{ - "id": 2, - "uri": "https://tnc.strongswan.org/api/devices/2/", - "value": "7d62eb4571acfaf657a9a14c55349bb3", - "description": "Image MSE FS16", - "product": { - "id": 36, - "uri": "https://tnc.strongswan.org/api/products/36/", - "name": "Ubuntu 14.04 x86_64" - }, - "created": "2017-05-15T10:43:00Z", - "trusted": 0 -} - -------------------------------------------------------------------------------- -SWID tags of all software packages first seen (installed) in session "41": - -https://tnc.strongswan.org/api/swid-stats/?first_seen=41&fields=tag - -[ - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4901/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4903/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4905/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4898/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4899/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4902/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4904/" - } -] - -------------------------------------------------------------------------------- -Complete information on session "41": - -https://tnc.strongswan.org/api/sessions/41/ - -{ - "id": 41, - "uri": "https://tnc.strongswan.org/api/sessions/41/", - "time": "2017-06-15T08:20:09Z", - "identity": { - "id": 21, - "uri": "https://tnc.strongswan.org/api/identities/21/", - "type": 6, - "data": "C=CH, O=strongSec GmbH, CN=brisbane.strongsec.com" - }, - "connectionId": 1, - "device": { - "id": 1, - "uri": "https://tnc.strongswan.org/api/devices/1/", - "value": "5d95021396d2415e5c53ca2dea6fbc1c2387c56a", - "description": "Lenovo ECC", - "product": { - "id": 75, - "uri": "https://tnc.strongswan.org/api/products/75/", - "name": "Ubuntu 16.04 x86_64" - }, - "created": "2017-04-19T20:20:41Z", - "trusted": 1 - }, - "recommendation": 0 -} - -------------------------------------------------------------------------------- -SWID tags of all software packages last seen (updated/deleted) in session "40": - -https://tnc.strongswan.org/api/swid-stats/?last_seen=40&fields=tag - -[ - { - "tag": "https://tnc.strongswan.org/api/swid-tags/838/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/2216/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/715/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/837/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4738/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4817/" - }, - { - "tag": "https://tnc.strongswan.org/api/swid-tags/4818/" - } -] - -------------------------------------------------------------------------------- -Time of session "40": - -https://tnc.strongswan.org/api/sessions/40/?fields=time - -{ - "time": "2017-06-13T12:47:14Z" -} - - diff --git a/ietf_99_hackathon/CVE-2016-8740-oval.xml b/ietf_hackathon/CVE-2016-8740-oval.xml similarity index 100% rename from ietf_99_hackathon/CVE-2016-8740-oval.xml rename to ietf_hackathon/CVE-2016-8740-oval.xml diff --git a/ietf_99_hackathon/CVE-2017-6891-oval.xml b/ietf_hackathon/CVE-2017-6891-oval.xml similarity index 100% rename from ietf_99_hackathon/CVE-2017-6891-oval.xml rename to ietf_hackathon/CVE-2017-6891-oval.xml diff --git a/ietf_99_hackathon/README.md b/ietf_hackathon/README.md similarity index 100% rename from ietf_99_hackathon/README.md rename to ietf_hackathon/README.md diff --git a/ietf_99_hackathon/graphics/Hackathon Deployment.vsdx b/ietf_hackathon/graphics/Hackathon Deployment.vsdx similarity index 100% rename from ietf_99_hackathon/graphics/Hackathon Deployment.vsdx rename to ietf_hackathon/graphics/Hackathon Deployment.vsdx diff --git a/ietf_99_hackathon/graphics/hackathon_deployment.graffle b/ietf_hackathon/graphics/hackathon_deployment.graffle similarity index 100% rename from ietf_99_hackathon/graphics/hackathon_deployment.graffle rename to ietf_hackathon/graphics/hackathon_deployment.graffle diff --git a/ietf_99_hackathon/graphics/hackathon_deployment.png b/ietf_hackathon/graphics/hackathon_deployment.png similarity index 100% rename from ietf_99_hackathon/graphics/hackathon_deployment.png rename to ietf_hackathon/graphics/hackathon_deployment.png diff --git a/ietf_99_hackathon/graphics/hackathon_deployment.vdx b/ietf_hackathon/graphics/hackathon_deployment.vdx similarity index 100% rename from ietf_99_hackathon/graphics/hackathon_deployment.vdx rename to ietf_hackathon/graphics/hackathon_deployment.vdx diff --git a/ietf_99_hackathon/graphics/hackathon_deployment_alternative.png b/ietf_hackathon/graphics/hackathon_deployment_alternative.png similarity index 100% rename from ietf_99_hackathon/graphics/hackathon_deployment_alternative.png rename to ietf_hackathon/graphics/hackathon_deployment_alternative.png diff --git a/ietf_99_hackathon/graphics/hackathon_deployment_combined.graffle b/ietf_hackathon/graphics/hackathon_deployment_combined.graffle similarity index 100% rename from ietf_99_hackathon/graphics/hackathon_deployment_combined.graffle rename to ietf_hackathon/graphics/hackathon_deployment_combined.graffle diff --git a/ietf_99_hackathon/graphics/hackathon_deployment_combined.png b/ietf_hackathon/graphics/hackathon_deployment_combined.png similarity index 100% rename from ietf_99_hackathon/graphics/hackathon_deployment_combined.png rename to ietf_hackathon/graphics/hackathon_deployment_combined.png diff --git a/ietf_99_hackathon/graphics/hackathon_deployment_original.graffle/data.plist b/ietf_hackathon/graphics/hackathon_deployment_original.graffle/data.plist similarity index 100% rename from ietf_99_hackathon/graphics/hackathon_deployment_original.graffle/data.plist rename to ietf_hackathon/graphics/hackathon_deployment_original.graffle/data.plist diff --git a/ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram.graffle b/ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram.graffle similarity index 100% rename from ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram.graffle rename to ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram.graffle diff --git a/ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram.png b/ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram.png similarity index 100% rename from ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram.png rename to ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram.png diff --git a/ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram.vdx b/ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram.vdx similarity index 100% rename from ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram.vdx rename to ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram.vdx diff --git a/ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram_implemented.graffle b/ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram_implemented.graffle similarity index 100% rename from ietf_99_hackathon/graphics/vulnerability_scenario_sequence_diagram_implemented.graffle rename to ietf_hackathon/graphics/vulnerability_scenario_sequence_diagram_implemented.graffle diff --git a/ietf_99_hackathon/rolieURLs b/ietf_hackathon/rolieURLs similarity index 100% rename from ietf_99_hackathon/rolieURLs rename to ietf_hackathon/rolieURLs diff --git a/ietf_99_hackathon/sacm-entry-oval-definitions.xml b/ietf_hackathon/sacm-entry-oval-definitions.xml similarity index 100% rename from ietf_99_hackathon/sacm-entry-oval-definitions.xml rename to ietf_hackathon/sacm-entry-oval-definitions.xml