Skip to content

Commit c3d5403

Browse files
authored
Merge branch 'gh-pages' into patch-1
2 parents 728c458 + 75fd56e commit c3d5403

5 files changed

Lines changed: 63 additions & 17 deletions

File tree

.ruby-version

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1 +1 @@
1-
2.3.1
1+
2.5.3

.travis.yml

Lines changed: 0 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -7,20 +7,9 @@ env:
77
global:
88
- NOKOGIRI_USE_SYSTEM_LIBRARIES=true # speeds up installation of html-proofer
99

10-
addons:
11-
apt:
12-
packages:
13-
- libcurl4-openssl-dev # required to avoid SSL errors
14-
1510
branches:
1611
only:
1712
- gh-pages
1813
- /.*/
1914

20-
before_install:
21-
- openssl version
22-
- openssl ciphers -v
23-
- openssl s_client -cipher ECDHE-RSA-AES256-GCM-SHA384 -connect github.blog:443 -tls1_2
24-
- curl -sSL -D - https://github.blog/2014-02-14-rendered-prose-diffs/ -o /dev/null
25-
sudo: false
2615
cache: bundler

Gemfile

Lines changed: 7 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,13 @@
22

33
source 'https://rubygems.org'
44

5-
gem 'github-pages'
6-
gem 'jekyll-octicons'
7-
# need lazy-load support
8-
gem 'jekyll-avatar', '>= 0.6.0'
5+
gem 'github-pages', '> 103', group: :jekyll_plugins
6+
7+
group :jekyll_plugins do
8+
gem 'jekyll-octicons'
9+
# need lazy-load support
10+
gem 'jekyll-avatar'
11+
end
912

1013
group :development, :test do
1114
gem 'html-proofer'

_data/governments.yml

Lines changed: 10 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -82,6 +82,7 @@ Brazil:
8282
- labhackercd
8383
- lexml
8484
- MP-ES
85+
- MP-RJ
8586
- pensandoodireito
8687
- plonegovbr
8788
- pr-snas
@@ -103,13 +104,15 @@ Canada:
103104
- AAFC-MBB
104105
- abgov
105106
- bcdevexchange
107+
- bac-lac
106108
- BCGov
107109
- canada-ca
108110
- cds-snc
109111
- CIHR
110112
- cityofgreatersudbury
111113
- cityofottawa
112114
- cityofsurrey
115+
- CityOfSarnia
113116
- CityofToronto
114117
- CityofEdmonton
115118
- cityssm
@@ -206,6 +209,7 @@ European Union:
206209
Finland:
207210
- 6Aika
208211
- City-of-Helsinki
212+
- City-of-Turku
209213
- CSC-IT-Center-for-Science
210214
- Digipalvelutehdas
211215
- finnishtransportagency
@@ -222,6 +226,7 @@ Finland:
222226
France:
223227
- afimb
224228
- AlsaceDigitale
229+
- AmbaNum
225230
- ANSSI-FR
226231
- ApieFrance
227232
- betagouv
@@ -231,6 +236,7 @@ France:
231236
- cea-sec
232237
- clipos
233238
- clipos-archive
239+
- cw-leia
234240
- communaute-cimi
235241
- culturecommunication
236242
- DGFiP
@@ -248,6 +254,7 @@ France:
248254
- MinistereSupRecherche
249255
- nanterre
250256
- nantesmetropole
257+
- opencti-platform
251258
- PnCevennes
252259
- PnEcrins
253260
- PnX-SI
@@ -367,6 +374,7 @@ Norway:
367374
- nasjonalmuseet
368375
- navikt
369376
- nlbdev
377+
- Riksrevisjonen
370378
- Rogaland
371379
- rutebanken
372380
- ruterno
@@ -466,6 +474,7 @@ Sweden:
466474
- swedish-council-for-higher-education
467475
- swedishpensionsagency
468476
- The-Municipality-of-Staffanstorp
477+
- umea-kommun
469478
- Vastra-Gotalandsregionen
470479
- vasttrafik
471480

@@ -639,6 +648,7 @@ U.S. City:
639648
- longbeachinnovationteam
640649
- LouisvilleMetro
641650
- mnhrc
651+
- moda-nyc
642652
- monum
643653
- NYCComptroller
644654
- nycdot
@@ -718,7 +728,6 @@ U.S. Federal:
718728
- globegit
719729
- gopleader
720730
- government-services
721-
- GreatSmokyMountainsNationalPark
722731
- gsa
723732
- gsa-oes
724733
- hhs

fedramp-faq.md

Lines changed: 45 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,45 @@
1+
---
2+
layout: support-page
3+
title: FedRAMP and GitHub
4+
description: GitHub Enterprise Cloud is now FedRAMP Authorized, which brings software collaboration to governments everywhere
5+
permalink: /fedramp-faq
6+
7+
---
8+
9+
10+
# 🎉 GitHub Enterprise Cloud + FedRAMP Tailored Authorized 🎉
11+
12+
Governments around the world use GitHub to build software, shape policy, and share information with constituents. To ensure that governments can have access to best-in-class tools, we’ve worked with the US Federal Government to secure FedRAMP Tailored Authorization for GitHub Enterprise Cloud.
13+
Government users can now rely on GitHub knowing that our platform meets the FedRAMP Tailored baseline of security standards set by our US federal government partners.
14+
15+
With GitHub Enterprise Cloud’s FedRAMP Tailored ATO, agencies can more easily:
16+
17+
- Securely collaborate on software development and management in the cloud
18+
- Modernize the way they build software
19+
- Take advantages of the latest features and capabilities that GitHub has to offer
20+
- Jump start agency authorization by reviewing our current FedRAMP Tailored ATO and authorization package
21+
22+
&nbsp;<br/>
23+
## Why did the GSA determine that FedRAMP Tailored is the right baseline for GitHub?
24+
25+
As the Federal government takes advantage of the capabilities of modern software development and collaboration that GitHub provides, it is important they also do so in a way that is compliant with their security requirements, including OMB A-130 and the Risk Management Framework (NIST SP 800-37). FedRAMP Tailored provides agencies with a flexible and reusable template for ensuring a strong, FISMA-compliant security baseline for low risk Software as a Service (SaaS) systems.
26+
27+
For this reason, when GSA looked to authorize GitHub.com for use within their agency, they determined that FedRAMP Tailored was the right baseline to apply. It provides for familiar security controls and framework, while allowing the flexibility to use modern tools with established security track records.
28+
29+
The FedRAMP Tailored baseline is purpose-built for modern and nimble SaaS solutions like GitHub. Other FedRAMP baselines are designed for either Infrastructure- or Platform-as a Service (IaaS or PaaS).
30+
31+
## Code is the most important asset that we create. Why is FedRAMP Tailored the right authorization to apply here?
32+
33+
FedRAMP Tailored was designed for Software as a Service systems like GitHub. FedRAMP requires that agencies specify the type of data that can reside within authorized systems. Best practices suggest that source code contain no information — personally identifiable or otherwise — so it is seen as low risk to operations.
34+
35+
FedRAMP Tailored can also speed the authorization process with reusable evidence and NIST 800-53 control inventories that agencies can base their own ATOs decisions on. The FedRAMP office can even share the previous authorization package ready for your review. Your agency’s Authorizing Officer (AO) may review and accept this package and issue an agency-specific Authority to Operate (ATO).
36+
[Download our authorization package from the FedRAMP Marketplace ](https://marketplace.fedramp.gov/#/product/github-enterprise-cloud?sort=productName&productNameSearch=GitHub)
37+
38+
## Does GitHub now comply with the Federal Information Security Management Act (FISMA)?
39+
GitHub’s FedRAMP authorization satisfies your FISMA concerns. FISMA is the law that requires US federal agencies and their partners to procure information systems and services only from organizations that adhere to how they meet the controls identified by the NIST in Special Publication 800-53 rev 4. The FISMA process (but not the underlying standards themselves) was replaced by FedRAMP in 2011.
40+
41+
## In summary
42+
GitHub’s FedRAMP Tailored authorization confirms our commitment to Government information security. It opens our best-of-breed software development and collaboration platform to even more missions, allowing even more agencies to benefit from the rigorous security of GitHub Enterprise Cloud.
43+
44+
- [Read more about GitHub's FedRAMP Authorization](https://blog.github.com/2018-10-24-github-is-fedramp-authorized/)
45+
- [Find GitHub in the FedRAMP marketplace](https://marketplace.fedramp.gov/#/product/github-enterprise-cloud)

0 commit comments

Comments
 (0)