New Feature Suggestions #273
Unanswered
WmJHarrison
asked this question in
Ideas
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I have quite a few suggestions for changes and new features that could enhance the functionality and usability for those individuals who have a lower level of technical knowledge. The additional information categories could help with risk assessment for an entity's specific environment when adopting controls.
Add a description of the OS feature (what service does it provide) and link to any technical references (Man pages, developer documentation, RFCs, etc.) if available
Define the potential risk the feature presents to the Confidentiality, Integrity, and Availability of the system.
Define the potential impact the implementation of the control will have on Usability, Manageability, Integrity, Availability, and Confidentiality.
Document the default setting as shipped as well as settings required for CMMC Levels 1, 2, and 3.
Add a key if the feature or control mechanism is deprecated. Currently deprecated information is part of Discussion or notes. Value would be the OS version the feature was deprecated in.
In the Guidance, Include a mechanism to add review comments as part of custom rules when publishing before consensus.
id:
reviewer:
comment:
The aggregated comments would be included for each rule with attribution.
Beta Was this translation helpful? Give feedback.
All reactions