Import in OSCAL format

  • Freigeben Version: Australia
  • Aktualisiert 12. März 2026
  • 1 Minute Lesedauer
  • The CAM OSCAL import offers a playbook-style experience designed to streamline the integration of security control data.

    This guided process supports importing JSON files in both Catalog and System Security Plan (SSP) models, using the OSCAL (Open Security Controls Assessment Language) format. From the OSCAL Import landing page, you can view a list of previously imported OSCAL files along with their current statuses. To start a new import, select New Import from the All OSCAL Imports landing page. The import process then guides you through the following structured stages:
    • Details: Enter the import details, such as the OSCAL model, source, and recipients for import status notifications.
    • Attachments: Upload the OSCAL-formatted files corresponding to the model selected in the Details tab.
      • For Catalog OSCAL model you must upload the catalog file to proceed with the import process.
      • For SSP OSCAL model you must upload the following files:
        • Catalog
        • Profile
        • SSP
        • Overlay: You can upload multiple overlay files.
    • Roles and Responsibilities: Assign users to specific roles for the imported files. These users will retain their roles throughout each step in the authorization package.
      Hinweis:
      This tab is applicable only when the SSP OSCAL model is selected.
    • Preview and Override: Review the list of files to be uploaded, along with the number of files that will be created or skipped. Take appropriate actions such as importing, skipping, or overriding.
      Hinweis:
      You can only override files that are in the skipped state. Additionally, if you override a package, all data associated with that package will be overridden.
    Using the CAM import OSCAL feature you can perform the following:

    For more information on the OSCAL import error and control catalog, see the OSCAL Import [KB1794095] article in the Now Support Knowledge Base.