OASIS AVDL TC Specification Public Review
OASIS AVDL TC Specification Public Review
Date: Thu, 05 Feb 2004 17:01:14 -0500 From: Karl F. Best <karl.best@oasis-open.org> To: members@lists.oasis-open.org, xml-dev@lists.xml.org Subject: Public review of OASIS AVDL TC spec
OASIS members, XML developers, standards and industry colleagues:
The OASIS Application Vulnerability Description Language (AVDL) TC has approved v1.0 of the AVDL Specification and related XML Schema as a Committee Draft, and is now starting a 30 day public review of the documents in anticipation of submitting them to the OASIS membership for approval as an OASIS Standard. This is in accordance with the OASIS Technical Committee Process document (see http://www.oasis-open.org/committees/process.php#standard).
The public review starts today, 5 February 2004 and ends 7 March 2004.
The specification and related XML Schema are found at:
http://www.oasis-open.org/committees/documents.php?wg_abbrev=avdl
Comments are welcome from all interested parties and may be submitted to the TC via a web form found on the TC's web page at http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=avdl. Click the button for "Send A Comment" at the top of the page.
Any comments made can be viewed at:
http://lists.oasis-open.org/archives/avdl-comment/
Regards,
Kevin Heineman
AVDL TC Chair
Email: kheineman@spidynamics.com
Call for Participation
AVDL version 1.0 is nearing completion and has begun the process of becoming an OASIS standard. I am pleased to report that the specification has been approved by the technical committee has been implemented as a prototype within three member companies. Shortly, the specification will begin the OASIS review process before a vote is made to create the standard. I would like to thank everyone for their hard work and dedication in making AVDL a reality.
As version 1.0 enters the review phase of the process, we have the opportunity to look ahead and begin planning for the next phase of the standard. At the next committee meeting, scheduled for February 12th, we will begin discussing what should be included within the scope of version 2.0 of the standard. Some suggestions to date include:
- Supporting additional protocols (in addition to HTTP)
- Supporting vulnerabilities for other scanners (e.g., Host scanners)
- Support internationalization
We would welcome your suggestions for other ideas. If you have a suggestion, please reply back to this distribution list or bring it with you to the next committee meeting. Each idea will be discussed and considered. Thanks in advance for your ideas and participation.
Regards,
Kevin Heineman
Vice President of Engineering
S.P.I. Dynamics, Inc.
Direct: 678.781.4830
Fax: 678.781.4850
Email: kheineman@spidynamics.com
WWW: www.spidynamics.com
Secure. Protect. Inspect.
[Source: http://lists.oasis-open.org/archives/avdl/200402/msg00000.html]
Prepared by Robin Cover for The XML Cover Pages archive. See details in the news story "OASIS Committee Draft for the Application Vulnerability Description Language." See also general references on "Application Security Standards."