NIST-CPE implementation

Registered by Miguel

OCS-NG could save the software and gardware inventory using the NIST's CPE especification (http://cpe.mitre.org). So, the information could be easily integrate into other applications, as vulnerability management tools, etc.

Blueprint information

Status:
Not started
Approver:
None
Priority:
Undefined
Drafter:
None
Direction:
Needs approval
Assignee:
None
Definition:
New
Series goal:
None
Implementation:
Unknown
Milestone target:
None

Related branches

Sprints

Whiteboard

On the server, generate a CPE name for each software/os/hardware.

CPE is a structured naming scheme for information technology systems, software, and packages. Based upon the generic syntax for Uniform Resource Identifiers (URI), CPE includes a formal name format, a method for checking names against a system, and a description format for binding text and tests to a name.

Specification: http://nvd.nist.gov/cpe.cfm
Example: http://nmap.org/book/output-formats-cpe.html

(?)

Work Items

This blueprint contains Public information 
Everyone can see this information.