-
-
Notifications
You must be signed in to change notification settings - Fork 13
Add CRA docs and Compliance docs structure #786
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
xeniape
wants to merge
9
commits into
main
Choose a base branch
from
feat/add-cra-and-compliance-structure
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Changes from all commits
Commits
Show all changes
9 commits
Select commit
Hold shift + click to select a range
ef2629d
Add CRA docs and Compliance docs structure
xeniape 8949e1a
pre-commit fixes
xeniape 4faffa0
update menu navbar
xeniape 5853243
Merge branch 'main' into feat/add-cra-and-compliance-structure
xeniape 11936f3
fix policies menu link
xeniape 4151d42
fix policies menu link
xeniape 2a92ff7
fix policies menu link
xeniape fab3991
Merge branch 'main' into feat/add-cra-and-compliance-structure
xeniape 4dfd3ef
Initial content for CRA page
lfrancke File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,5 +1 @@ | ||
* xref:release-notes.adoc[Release notes] | ||
* xref:product-information.adoc[] | ||
* xref:policies.adoc[] | ||
* xref:licenses.adoc[Licenses] | ||
* xref:export.adoc[Export Control] |
20 changes: 10 additions & 10 deletions
20
modules/ROOT/partials/supported-kubernetes-distributions.adoc
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,10 +1,10 @@ | ||
* xref:kubernetes/eks.adoc[] | ||
* xref:kubernetes/aks.adoc[] | ||
* xref:kubernetes/gke.adoc[] | ||
* xref:kubernetes/ionos-managed-k8s.adoc[] | ||
* xref:kubernetes/ionos-managed-stackable.adoc[] | ||
* xref:kubernetes/kind.adoc[] | ||
* xref:kubernetes/microk8s.adoc[] | ||
* xref:kubernetes/openshift.adoc[] | ||
* xref:kubernetes/suse-k3s.adoc[] | ||
* xref:kubernetes/suse-rancher.adoc[] | ||
* xref:ROOT:kubernetes/eks.adoc[] | ||
* xref:ROOT:kubernetes/aks.adoc[] | ||
* xref:ROOT:kubernetes/gke.adoc[] | ||
* xref:ROOT:kubernetes/ionos-managed-k8s.adoc[] | ||
* xref:ROOT:kubernetes/ionos-managed-stackable.adoc[] | ||
* xref:ROOT:kubernetes/kind.adoc[] | ||
* xref:ROOT:kubernetes/microk8s.adoc[] | ||
* xref:ROOT:kubernetes/openshift.adoc[] | ||
* xref:ROOT:kubernetes/suse-k3s.adoc[] | ||
* xref:ROOT:kubernetes/suse-rancher.adoc[] |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,7 +1,7 @@ | ||
* xref:kubernetes/huawei-cloud.adoc[] | ||
* xref:kubernetes/ibm-cloud.adoc[] | ||
* xref:kubernetes/ovh-mks.adoc[] | ||
* xref:kubernetes/plusserver.adoc[] | ||
* xref:kubernetes/ske.adoc[] (with the exception of missing public NodePorts) | ||
* xref:kubernetes/vmware_tanzu.adoc[] | ||
* xref:kubernetes/oke.adoc[] | ||
* xref:ROOT:kubernetes/huawei-cloud.adoc[] | ||
* xref:ROOT:kubernetes/ibm-cloud.adoc[] | ||
* xref:ROOT:kubernetes/ovh-mks.adoc[] | ||
* xref:ROOT:kubernetes/plusserver.adoc[] | ||
* xref:ROOT:kubernetes/ske.adoc[] (with the exception of missing public NodePorts) | ||
* xref:ROOT:kubernetes/vmware_tanzu.adoc[] | ||
* xref:ROOT:kubernetes/oke.adoc[] |
File renamed without changes
File renamed without changes
File renamed without changes
File renamed without changes
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,6 @@ | ||
* xref:index.adoc[Compliance] | ||
** xref:product-information.adoc[] | ||
** xref:policies.adoc[] | ||
** xref:licenses.adoc[Licenses] | ||
** xref:export.adoc[Export Control] | ||
** xref:cra.adoc[CRA] |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,57 @@ | ||
= Cyber Resilience Act (CRA) | ||
|
||
NOTE: The https://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A32024R2847[Cyber Resilience Act (CRA)] is a European regulation that establishes cybersecurity requirements for products with digital elements placed on the EU market. | ||
It aims to ensure that hardware and software products are designed, developed, and maintained with adequate cybersecurity throughout their lifecycle. | ||
|
||
This will be expanded over time. | ||
|
||
== Target Audience & Content | ||
|
||
This page serves as a central hub for | ||
|
||
* users of the Stackable Data Platform (SDP), | ||
* market surveillance authorities, | ||
* and the https://single-market-economy.ec.europa.eu/single-market/goods/building-blocks/market-surveillance/organisation/adcos_en[Administrative Cooperation Group] (AdCo) established in Article 52(15) | ||
|
||
to find all information mandated by the CRA in a single and central place. | ||
|
||
== Stackable Data Platform (SDP) classification | ||
|
||
The CRA defines multiple product categories that determine the conformity assessment procedure. | ||
We consider the Stackable Data Platform to be a default product (not Important or Critical). | ||
This means we perform a self-assessment of conformity rather than requiring third-party certification. | ||
|
||
== Annex II: Information and instructions to the user | ||
|
||
Annex II of the CRA specifies information that manufacturers must provide to users. | ||
The following items correspond to the numbered requirements in Annex II: | ||
|
||
. **Contact Information**: You can find all our contact information on our homepage in the https://stackable.tech/en/imprint/[imprint] section. | ||
|
||
. **Vulnerability Disclosure**: Please see our https://stackable.tech/en/vulnerability-disclosure-policy/[Vulnerability Disclosure Policy] for all information on how to report vulnerabilities in a coordinated way. | ||
|
||
. **Product Identification**: The Stackable Data Platform (SDP) is a Kubernetes-based data platform for operating data applications. | ||
All our images are tagged and contain annotations to identify the product versions. | ||
Additional documentation will follow. | ||
|
||
. **Intended Purpose and Security Properties**: Information about the intended purpose of SDP, the security environment, essential functionalities, and security properties will be documented here. | ||
|
||
. **Known Cybersecurity Risks**: Information about known or foreseeable circumstances that may lead to significant cybersecurity risks will be documented here. | ||
|
||
. **EU Declaration of Conformity**: The internet address at which the EU declaration of conformity can be accessed will be provided here when available. | ||
|
||
. **Security Support and Support Period**: Please see our xref:policies.adoc[Lifecycle policies] for information on the type of security support offered and the support duration, including the period during which vulnerabilities will be handled and security updates provided for the Stackable Data Platform and the included products. | ||
|
||
. **Security Instructions**: Detailed instructions on the following topics will be documented here: | ||
+ | ||
-- | ||
* Necessary measures during initial commissioning and throughout the product lifetime to ensure secure use | ||
* How changes to the product can affect data security | ||
* How to install security-relevant updates | ||
* Secure decommissioning of the product and secure removal of user data | ||
* How to manage automatic security update settings | ||
* Information for integrators on cybersecurity requirements (where applicable) | ||
-- | ||
|
||
. **Software Bill of Materials (SBOM)**: We provide https://sboms.stackable.tech/[SBOMs] for all container images in the Stackable Data Platform. | ||
Please see our xref:guides:viewing-and-verifying-sboms.adoc[SBOM documentation] for information on how to access, view, and verify SBOMs. |
1 change: 1 addition & 0 deletions
1
modules/ROOT/pages/export.adoc → modules/compliance/pages/export.adoc
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
1 change: 1 addition & 0 deletions
1
modules/ROOT/pages/licenses.adoc → modules/compliance/pages/licenses.adoc
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
1 change: 1 addition & 0 deletions
1
modules/ROOT/pages/policies.adoc → modules/compliance/pages/policies.adoc
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
It would be great if we had a little bit of content here (just 2 sentences)