<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DISA STIG Management in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41552#M3085</link>
    <description>This is the exact situation we find ourselves in - old CKL format not compatible with current updates as of this post. We've worked a lot of CKLs for machines beginning the task in Sept 2020. We just pulled recent STIG updates planning to complete the deltas by import of existing CKL over the current. As noted the new versions use the new Vuln IDs, etc., and we are unable to import our previous CKLs because they don't match. No content transferred.&lt;BR /&gt;&lt;BR /&gt;Anyone know of a workaround/recommended process for this, or are we back to just running current SCAP scans, and copy/pasting the standouts manually reviewing the mapping sheet included within the STIG?</description>
    <pubDate>Thu, 10 Dec 2020 23:49:55 GMT</pubDate>
    <dc:creator>msg</dc:creator>
    <dc:date>2020-12-10T23:49:55Z</dc:date>
    <item>
      <title>DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/1121#M2878</link>
      <description>&lt;P&gt;To anyone that works in the DoD space... how can you take a .ckl file and add the new STIG requirements to that ckl file to be reviewed so that you can avoid having to review ALL of the STIG requirements every quarter?&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 08:18:37 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/1121#M2878</guid>
      <dc:creator>Kdaily</dc:creator>
      <dc:date>2023-10-09T08:18:37Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/2096#M2879</link>
      <description>&lt;P&gt;You can't. Welcome to DOD internal written software.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You will need to generate the new checklist and copy/paste any findings/comments back over, keeping an eye open for changed items. Not too difficult if you are lucky enough to do this on a SCAP scan, but that's limited to something like 8 checklists total.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now if someone was willing to pay me, I could build a new checklist manager that can compare an old+new checklist, create a "combined" checklist with proper formatting&amp;nbsp;&amp;amp; a list of what's new, but it will take about 6 months. I would also need to work it on personal time, so... yeah, never gonna happen.&lt;/P&gt;</description>
      <pubDate>Sun, 29 Oct 2017 17:45:46 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/2096#M2879</guid>
      <dc:creator>Samhain</dc:creator>
      <dc:date>2017-10-29T17:45:46Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/2101#M2880</link>
      <description>Hey Samhain, actually DISA released the new version of STIG Viewer last week and it does exactly what I was asking. Maybe my back and forth with them got them to do it... I have no idea but I think it was released on Oct. 23. I've tested it and it works perfect. Basically you make a new checklist and then import in the previous checklist. You're left with the delta as not reviewed.</description>
      <pubDate>Sun, 29 Oct 2017 17:57:56 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/2101#M2880</guid>
      <dc:creator>Kdaily</dc:creator>
      <dc:date>2017-10-29T17:57:56Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/2341#M2881</link>
      <description>&lt;P&gt;Yep. They did fix that "little" issue finally. I saw the release on Friday, but hadn't pulled it down yet. We aren't due for a full STIG review until next month, so wasn't in a rush.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now if I can just figure out how to work with the XCCDF files directly in my own apps, I'll be set. I really want to automate the IIS 8.5 STIG for our web servers. It's a real pain hand-checking every setting.&lt;/P&gt;</description>
      <pubDate>Mon, 30 Oct 2017 02:15:05 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/2341#M2881</guid>
      <dc:creator>Samhain</dc:creator>
      <dc:date>2017-10-30T02:15:05Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39739#M2984</link>
      <description>&lt;P&gt;May you please share the URL of this STIG Viwer. I really need help on this.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Oct 2020 08:18:06 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39739#M2984</guid>
      <dc:creator>akhilmi87</dc:creator>
      <dc:date>2020-10-06T08:18:06Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39740#M2985</link>
      <description>&lt;A href="https://public.cyber.mil/stigs/srg-stig-tools/" target="_blank"&gt;https://public.cyber.mil/stigs/srg-stig-tools/&lt;/A&gt;</description>
      <pubDate>Tue, 06 Oct 2020 09:05:08 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39740#M2985</guid>
      <dc:creator>Kdaily</dc:creator>
      <dc:date>2020-10-06T09:05:08Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39743#M2986</link>
      <description>&lt;P&gt;thanks for this. I downloaded the Stig viewer. but unable to find an option to copy or import old ckl file into new ckl file. Can you please help on this ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Oct 2020 09:19:33 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39743#M2986</guid>
      <dc:creator>akhilmi87</dc:creator>
      <dc:date>2020-10-06T09:19:33Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39745#M2987</link>
      <description>Open stig viewer and import your STIGs. Then checklist, create checklist. Once you have the checklist with the current STIGs you will go to import and choose xccdf. Then choose your d checklist and it will bring everything in.</description>
      <pubDate>Tue, 06 Oct 2020 10:32:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39745#M2987</guid>
      <dc:creator>Kdaily</dc:creator>
      <dc:date>2020-10-06T10:32:09Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39749#M2988</link>
      <description>&lt;P&gt;Thanks Kdaily, it helped a lot.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Oct 2020 12:17:08 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39749#M2988</guid>
      <dc:creator>akhilmi87</dc:creator>
      <dc:date>2020-10-06T12:17:08Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39772#M2989</link>
      <description>&lt;P&gt;Be aware that the latest STIG viewers use the new vulnerability IDs and internal format structure, so old CKL files may not import in the new version correctly. You may need to dig up an older version of the viewer depending on how old the CKL file is.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Oct 2020 18:03:36 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39772#M2989</guid>
      <dc:creator>Samhain</dc:creator>
      <dc:date>2020-10-06T18:03:36Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39775#M2990</link>
      <description>In my case, old ckl files were generated on Jan 2019. Do u still see any concerns?</description>
      <pubDate>Tue, 06 Oct 2020 18:10:34 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/39775#M2990</guid>
      <dc:creator>akhilmi87</dc:creator>
      <dc:date>2020-10-06T18:10:34Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41552#M3085</link>
      <description>This is the exact situation we find ourselves in - old CKL format not compatible with current updates as of this post. We've worked a lot of CKLs for machines beginning the task in Sept 2020. We just pulled recent STIG updates planning to complete the deltas by import of existing CKL over the current. As noted the new versions use the new Vuln IDs, etc., and we are unable to import our previous CKLs because they don't match. No content transferred.&lt;BR /&gt;&lt;BR /&gt;Anyone know of a workaround/recommended process for this, or are we back to just running current SCAP scans, and copy/pasting the standouts manually reviewing the mapping sheet included within the STIG?</description>
      <pubDate>Thu, 10 Dec 2020 23:49:55 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41552#M3085</guid>
      <dc:creator>msg</dc:creator>
      <dc:date>2020-12-10T23:49:55Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41553#M3086</link>
      <description>&lt;P&gt;You are basically stuck doing the copy/paste thing. I'm in the middle of an annual security review, and I've had to copy/paste on just about every STIG/SRG so far. Add into that the fact the our RMF system (eMass) hasn't applied the updates for new vulnerability IDs yet, and we are stuck. Luckily, the new IDs are supposed to go in over the weekend, but I will be stuck having to rehome all of our POAM references to the new IDs most likely.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Job security though, right?&lt;/P&gt;</description>
      <pubDate>Fri, 11 Dec 2020 00:16:05 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41553#M3086</guid>
      <dc:creator>Samhain</dc:creator>
      <dc:date>2020-12-11T00:16:05Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41554#M3087</link>
      <description>&lt;P&gt;Okay, yeah, figured. Thanks for the confirmation.&lt;BR /&gt;&lt;BR /&gt;Sheeze, I didn't think about rehoming the POAM refs. Not one of our tasks (yet), but I can see where this can ripple out.&lt;BR /&gt;&lt;BR /&gt;Have you read anything on how exactly this move is to provide increased flexibility?&lt;BR /&gt;&lt;BR /&gt;I wonder if it'd be worth (or still possible) working with the new CKLs in the .xml format in Notepad instead of STIG Viewer for the copy/paste ops. Are you just keeping the mapping sheet out while you roll through them? Could be done with side by side Notepad windows, the mapping sheet, and CTRL+F the way down each CKL after identifying the Vuln IDs not covered by current SCAP Benchmarks?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But yeah, hehe, job security.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Dec 2020 01:32:17 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41554#M3087</guid>
      <dc:creator>msg</dc:creator>
      <dc:date>2020-12-11T01:32:17Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41586#M3089</link>
      <description>&lt;P&gt;I just setup my first new CKL earlier to develop the workflow.&amp;nbsp; I was originally planning to have to have the STIG mapping sheet out as reference, but I see now that in the new STIG header in STIG Viewer, they list the Legacy IDs for you.&amp;nbsp; That'll be helpful.&amp;nbsp; Just one less step.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can see using a combination of filters and these legacy references to help with this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I thought there'd be a way to do this with PowerShell, directly editing the .ckl file, but I'm no PS guru.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Dec 2020 20:19:27 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41586#M3089</guid>
      <dc:creator>msg</dc:creator>
      <dc:date>2020-12-11T20:19:27Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41587#M3090</link>
      <description>&lt;P&gt;I reached out to DISA today to find out if there was anything other than a manual transition to the new versions and this is what I received.... Demanded to know who my government sponsor was... yet still answered the question (sort of).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thank you for contacting DISA STIG Customer Support.&amp;nbsp; We support only&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;government, military, or contractor support to the government.&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Who is your DoD sponsor ?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Your DoD sponsor needs to be included in this email chain.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;What DoD contract do you support?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;--&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Over 6 months ago we posted a critical update to the stig format on our Cyber X web page. That updated showed the direction we were going with the new STIG IDs&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;We also posted several test stigs for the community to review during this time period.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;There is a mapping sheet in the stigs that were updated to the new format.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;The stig viewer has never had the ability to import between new releases of content, only between versions.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;There will be no update to the viewer&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Dec 2020 20:29:58 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/41587#M3090</guid>
      <dc:creator>Kdaily</dc:creator>
      <dc:date>2020-12-11T20:29:58Z</dc:date>
    </item>
    <item>
      <title>.</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/42794#M3126</link>
      <description />
      <pubDate>Sun, 24 Jan 2021 16:06:44 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/42794#M3126</guid>
      <dc:creator>rlb0720</dc:creator>
      <dc:date>2021-01-24T16:06:44Z</dc:date>
    </item>
    <item>
      <title>Re: .</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/42795#M3127</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/651547253"&gt;@rlb0720&lt;/a&gt;&amp;nbsp;Did you figure out your question?&amp;nbsp; I saw a lengthier post in the thread email notification, but content is missing in the post above.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You should be able to import content between CKLs created in the same Version.&amp;nbsp; I believe the process would be something like:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Create the new CKL from the new STIG, and save it with its appropriate file name&lt;/LI&gt;&lt;LI&gt;Import the previous CKL (not the XCCDF file, that's for SCAP results in a later step)&lt;/LI&gt;&lt;LI&gt;Lastly, import the latest SCAP results XCCDF file to update the SCAP content in the new CKL.&lt;UL&gt;&lt;LI&gt;It will update the Finding Details field if there are changes, removing and replacing any existing content here.&lt;/LI&gt;&lt;LI&gt;It will leave the Comments section alone, so you will want to review the previous and new CKL totals for changes and review for accuracy to make sure there are no Comments in place that no longer apply if a STIG that was earlier not addressed by SCAP now has been.&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've found that the use of the filters' Vulnerability parameter and typing the last three digits of a vuln ID is very handy for stripping down content.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can also open multiple instances of STIG Viewer side by side to more easily compare two CKLs.&amp;nbsp; Don't run them in full screen; there's no need.&amp;nbsp; You can reduce the window width and still be able to easily view everything you need to work efficiently.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Jan 2021 16:56:12 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/42795#M3127</guid>
      <dc:creator>msg</dc:creator>
      <dc:date>2021-01-24T16:56:12Z</dc:date>
    </item>
    <item>
      <title>Re: .</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/44247#M3197</link>
      <description>&lt;P&gt;I just pulled down STIG Viewer 2.12 and it looks like it offers the capability of importing checklists created in previous versions now.&amp;nbsp; Just did a couple of tests and looks like it works.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyone else able to confirm?&lt;/P&gt;</description>
      <pubDate>Thu, 25 Mar 2021 21:24:59 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/44247#M3197</guid>
      <dc:creator>msg</dc:creator>
      <dc:date>2021-03-25T21:24:59Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG Management</title>
      <link>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/57664#M3854</link>
      <description>&lt;P&gt;dawg!&amp;nbsp; no one answered since 2017!&amp;nbsp; &amp;nbsp;I hope you found your answer.&amp;nbsp; But anyways, you can do via Stigviewer.&lt;/P&gt;&lt;P&gt;in Stigviewer, upload current stig.&amp;nbsp; Then make it a checklist (this step can be done in the stigviewer menu choices).&amp;nbsp; Then import your checklist into this stigviewer checklist you just made.&amp;nbsp; Note:&amp;nbsp; If your checklist is too too many versions older than the current stig in your stigviewer it will not work....which is the problem I just found out that I have....which is why to relieve my frustration... I came here.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Mar 2023 19:27:12 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/DISA-STIG-Management/m-p/57664#M3854</guid>
      <dc:creator>RoadDog</dc:creator>
      <dc:date>2023-03-07T19:27:12Z</dc:date>
    </item>
  </channel>
</rss>

