data.schemas.3.0.ISM.IC-ISM.xsd Maven / Gradle / Ivy
Go to download
Show more of this group Show more artifacts with this name
Show all versions of ddmsence Show documentation
Show all versions of ddmsence Show documentation
DDMSence (pronounced "dee-dee-em-Essence") is the only open-source Java library that fully supports the
DoD Discovery Metadata Specification (DDMS).
The newest version!
W3C XML Schema for the Intelligence Community Metadata Standard for Information Security Marking (IC-ISM), which is part of the XML DATA ENCODING SPECIFICATION FOR INFORMATION SECURITY MARKING METADATA.
This simple type is used by the classification attribute to identify the highest level of classification of the information being encoded. It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
The permissible values for this simple type are defined in the Controlled Value Enumeration:
CVEnumISMClassificationAll.xml
The group of Information Security Marking attributes in which the use of attributes 'classification' and 'ownerProducer' is required.
This group is to be contrasted with group 'SecurityAttributesOptionGroup' in which use of those attributes is optional.
The group of Information Security Marking attributes in which the use of attributes 'classification' and 'ownerProducer' is optional.
This group is to be contrasted with group 'SecurityAttributesGroup' in which use of these attributes is required.
The group of Information Security Marking attributes for use on a notice element in which the use of attributes 'classification' and 'ownerProducer' is required.
The group of Information Security Marking attributes for use on a notice element in which the use of Security on the notice is optional.
This attribute is used at both the resource and the portion levels.
A single indicator of the highest level of classification applicable to an information resource or portion within the domain of classified national security information. The Classification element is always used in conjunction with the Owner Producer element. Taken together, the two elements specify the classification category and the type of classification (US, non-US, or Joint).
It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
The permissible values for this simple type are defined in the Controlled Value Enumeration:
CVEnumISMClassificationAll.xml
This attribute is used at both the resource and the portion levels.
One or more indicators identifying the national government or international organization that have purview over the classification marking of an information resource or portion therein. This element is always used in conjunction with the Classification element. Taken together, the two elements specify the classification category and the type of classification (US, non-US, or Joint).
Within protected internal organizational spaces this element may include one or more indicators identifying information which qualifies as foreign government information for which the source(s) of the information must be concealed. Measures must be taken prior to dissemination of the information to conceal the source(s) of the foreign government information.
Specifically, under these specific circumstances, when data are moved to the shared spaces, the non-disclosable owner(s) and/or producer(s) listed in this data element's value should be removed and replaced with "FGI".
The attribute value may be manifested in portion marks or security banners.
PERMISSIBLE VALUES
1) The value "FGI" is permited under the circumstances described above.
2) The full set of values are defined in the Controlled Value Enumeration:
CVEnumISMOwnerProducer.xml
This attribute is used at both the resource and the portion levels.
One or more indicators identifying sensitive compartmented information control system(s).
It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
The permissible values for this attribute are defined in the Controlled Value Enumeration:
CVEnumISMSCIControls.xml
This attribute is used at both the resource and the portion levels.
One or more indicators identifying the defense or intelligence programs for which special access is required.
It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
The permissible values for this attribute are defined in the Controlled Value Enumeration:
CVEnumISMSAR.xml
This attribute is used at both the resource and the portion levels.
One or more indicators identifying the expansion or limitation on the distribution of information.
It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
The permissible values for this attribute are defined in the Controlled Value Enumeration:
CVEnumISMDissem.xml
This attribute is used at both the resource and the portion levels.
One or more indicators identifying information which qualifies as foreign government information for which the source(s) of the information is not concealed.
The attribute can indicate that the source of information of foreign origin is unknown.
It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
1) The value "UNKNOWN" is permited under the circumstances described above.
2) The full set of values are defined in the Controlled Value Enumeration:
CVEnumISMFGIOpen.xml
This attribute is used at both the resource and the portion levels.
This attribute has unique specific rules concerning its usage.
A single indicator that information qualifies as foreign government information for which the source(s) of the information must be concealed.
Within protected internal organizational spaces this element may be used to maintain a record of the one or more indicators identifying information which qualifies as foreign government information for which the source(s) of the information must be concealed. Measures must be taken prior to dissemination of the information to conceal the source(s) of the foreign government information.
An indication that information qualifies as foreign government information according to CAPCO guidelines for which the source(s) of the information must be concealed when the information is disseminated in shared spaces
This data element has a dual purpose. Within shared spaces, the data element serves only to indicate the presence of information which is categorized as foreign government information according to CAPCO guidelines for which the source(s) of the information is concealed, in which case, this data element's value will always be "FGI". The data element may also be employed in this manner within protected internal organizational spaces. However, within protected internal organizational spaces this data element may alternatively be used to maintain a formal record of the foreign country or countries and/or registered international organization(s) that are the non-disclosable owner(s) and/or producer(s) of information which is categorized as foreign government information according to CAPCO guidelines for which the source(s) of the information must be concealed when the resource is disseminated to shared spaces. If the data element is employed in this manner, then additional measures must be taken prior to dissemination of the resource to shared spaces so that any indications of the non-disclosable owner(s) and/or producer(s) of information within the resource are eliminated.
In all cases, the corresponding portion marking or banner marking should be compliant with CAPCO guidelines for FGI when the source must be concealed. In other words, even if the data element is being employed within protected internal organizational spaces to maintain a formal record of the non-disclosable owner(s) and/or producer(s) within an XML resource, if the resource is rendered for display within the protected internal organizational spaces in any format by a stylesheet or as a result of any other transformation process, then the non-disclosable owner(s) and/or producer(s) should not be included in the corresponding portion marking or banner marking.
PERMISSIBLE VALUES
1) The value "FGI" is permited under the circumstances described above.
2) The full set of values are defined in the Controlled Value Enumeration:
CVEnumISMFGIProtected.xml
This attribute is used at both the resource and the portion levels.
One or more indicators identifying the country or countries and/or international organization(s) to which classified information may be released based on the determination of an originator in accordance with established foreign disclosure procedures. This element is used in conjunction with the Dissemination Controls element.
It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
The permissible values for this attribute are defined in the Controlled Value Enumeration:
CVEnumISMRelTo.xml
This attribute is used at both the resource and the portion levels.
One or more indicators of the expansion or limitation on the distribution of an information resource or portion within the domain of information originating from non-intelligence components.
It is manifested in portion marks and security banners.
PERMISSIBLE VALUES
The permissible values for this attribute are defined in the Controlled Value Enumeration:
CVEnumISMNonIC.xml
This attribute is used primarily at the resource level.
The identity, by name or personal identifier, and position title of the original classification authority for a resource.
It is manifested only in the 'Classified By' line of a resource's classification authority block.
This attribute is used primarily at the resource level.
The identity, by name or personal identifier, of the derivative classification authority.
It is manifested only in the 'Classified By' line of a resource's classification authority block.
This attribute is used primarily at the resource level.
One or more reason indicators or explanatory text describing the basis for an original classification decision.
It is manifested only in the 'Reason' line of a resource's classification authority block.
This attribute is used primarily at the resource level.
A citation of the authoritative source or reference to multiple sources of the classification markings used in a classified resource.
It is manifested only in the 'Derived From' line of a document's classification authority block.
This attribute is used primarily at the resource level.
A specific year, month, and day upon which the information shall be automatically declassified if not properly exempted from automatic declassification.
It is manifested in the 'Declassify On' line of a resource's classification authority block.
This attribute is used primarily at the resource level.
A description of an event upon which the information shall be automatically declassified if not properly exempted from automatic declassification.
It is manifested only in the 'Declassify On' line of a resource's classification authority block.
This attribute is used primarily at the resource level.
A single indicator describing an exemption to the nominal 25-year point for automatic declassification. This element is used in conjunction with the Declassification Date or Declassification Event.
It is manifested in the 'Declassify On' line of a resource's classification authority block.
ISOO has stated it should be a SINGLE value giving the longest protection.
PERMISSIBLE VALUE
The permissible value for this attribute is defined in the Controlled Value Enumeration:
CVEnumISMN25X.xml
This attribute is used primarily at the resource level.
A declassification marking of a source document that causes the current, derivative document to be exempted from automatic declassification. This element is always used in conjunction with the Date Of Exempted Source element.
It is manifested only in the 'Declassify On' line of a document's classification authority block.
ISOO has stated it should be a SINGLE value giving the longest protection.
PERMISSIBLE VALUE
The permissible value for this attribute is defined in the Controlled Value Enumeration:
CVEnumISMSourceMarked.xml
This attribute is used primarily at the resource level.
A specific year, month, and day of publication or release of a source document, or the most recent source document, that was itself marked with a declassification constraint. This element is always used in conjunction with the Type Of Exempted Source element.
It is manifested only in the 'Declassify On' line of a resource's classification authority block.
This attribute is used to designate which element has the ISM attributes representing the classification for the entire resource.
Every document must have at least one element with this indicator as true. It should be rare that a document has more than one. Mainly
this would occur in some sort of aggregator schema. In that unusual case the first one encountered in XML document order is the one used for
all constraint rules.
This attribute is used to designate that an element's ISM attributes should not be used in a rollup. Generally
this is because the element is defining the security attributes of a remote object NOT indicating security constraints for
data in this document. This allows an Unclassified document to assert that some document not included has a Top Secret classification without
the TS attribute value causing rollup to make the document TS.
This attribute is used to designate what date the document was produced on. This is the date that will be used by
various constraint rules to determine if the document meets all the business rules. It must be on the element where
resourceElement is true.
A description of the reasons that the classification of this element is more restrictive than a simple roll-up of the
sub elements would result in. This acts as an indicator to rule engines that there is not accidental over classification
going on and to users that special care beyond what the portion marks reveal must be taken when using this data. Use of this
mark does not replace the need for the compilation reason being defined in the prose in accordance with ISOO Directive 1.
For example this would document why 3 Unclassified bullet items form a Secret List.
Without this reason being noted the above described document would be considered to be miss-marked and overclassified.
A categorization defining which of the required Notices, described in the CAPCO Register, is included in the element.
This attribute is an indicator that the element contains a Notice. The element could contain any structure the implementing
schema defined and details of the rendering would be up to the schema in question.
The permissible value for this attribute are defined in the Controlled Value Enumeration:
CVEnumISMNotice.xml
An attribute group to be used on the root node of a schema implementing ISM.
ISM being entirely attributes based groups such as this are the only way to specify required use.
The version number of the DES. Should there be multiple specified in an instance document
the one at the root node is the one that will apply to the entire document.
An attribute group to be used on the element that represents the resource
node of an instance document. This node's ISM attributes would be used to
generate banner marks and the E.O. 12958 classification authority block.
Implementing Schemas might use this on the Root node or any other node.