Object Storage v2025.01 #515
Replies: 8 comments 8 replies
-
|
A fix occurred in #592 removing some duplication. Can we please get a new release? Thank you. /cc @damienjburks |
Beta Was this translation helpful? Give feedback.
-
|
Reviewed both VPC and Object Storage controls. Controls align with stated threats. Sampled the mappings to other benchmarks as well as MITRE and do not see any misalignment. |
Beta Was this translation helpful? Give feedback.
-
|
Looks like there's a typo in CCC.C03.TR02, it reads: I guess this should be: |
Beta Was this translation helpful? Give feedback.
-
|
There are two definitions for CCC.c04.TR01 in the controls YAML file:
How would you advise testing these? (e.g. are there any recommended actions here) And how should we classify sensitive information, does that just mean data plane information i.e. data stored in the storage account? |
Beta Was this translation helpful? Give feedback.
-
|
A couple of the tests under CCC.ObjStor.C05 are mis-titled as CCC.ObjStor.C06, namely TR02 and TR03. |
Beta Was this translation helpful? Give feedback.
-
|
Official Release: https://github.com/finos/common-cloud-controls/releases/tag/v2025.01.ObjStor For any additional updates or feedback, please reach out to the ccc-communications+subscribe@lists.finos.org. |
Beta Was this translation helpful? Give feedback.
-
|
Another quick question, this time on CCC_ObjStor_C01_TR01, which reads: Is this referring to CMK encryption keys here? Or another type of key authentication? |
Beta Was this translation helpful? Give feedback.
-
|
One more quick one, CCC.C04.TR01 is defined twice, should these be CCC.C04.TR01 & CCC.C04.TR02 and then the current CCC.C04.TR02 bumped to CCC.C04.TR02? |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
Please use this space to discuss the release candidate for Object Storage.
The controls catalog to review may be downloaded here: CCC.ObjStor_2025.01.pdf
Please follow this guide for CMB discussions: CMB Feedback Guide
Note
Remember to use "Add a Comment" to create a new feedback entry, and use "Write a reply" to extend or debate an existing point. Release managers may moderate posts for organizational or conduct purposes.
Release Manager: Damien Burks (@damienjburks)
Beta Was this translation helpful? Give feedback.
All reactions