Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
IT Security NachrichtenEntwickler: Claude Code macht Job seelenlos(23.09.2026 um 10:06 Uhr)
IT Security NachrichtenBW/4HANA oder Business Data Cloud: Migration als Grundsatzentscheidung(23.09.2026 um 10:32 Uhr)
IT Security NachrichtenZukunftssichere Unternehmenssteuerung im Mittelstand(23.09.2026 um 10:50 Uhr)
IT Security NachrichtenWhy security belongs in the network(23.09.2026 um 10:00 Uhr)
IT Security NachrichtenNeue Cybersecurity-Pflichten für den Maschinenbau(23.09.2026 um 11:00 Uhr)
IT Security NachrichtenOpus 5.5: Anthropics neues KI-Modell - mehr Leistung, geringere Kosten(23.09.2026 um 09:50 Uhr)
IT Security NachrichtenFBI gehackt: Täter erbeuten angeblich die Daten aller Mitarbeiter(23.09.2026 um 10:30 Uhr)
IT Security NachrichtenTiefpreis-Tage: 13 Deals bei Media Markt & Saturn, die sich lohnen(23.09.2026 um 10:51 Uhr)
IT Security NachrichtenPatchday: Adobe Connect ist unter Android, macOS und Windows verwundbar(23.09.2026 um 10:45 Uhr)
IT Security DownloadsFoxit PDF Reader Download - PDF-Dateien anzeigen(23.09.2026 um 09:39 Uhr)
IT Security NachrichtenEntwickler: Claude Code macht Job seelenlos(23.09.2026 um 10:06 Uhr)
IT Security NachrichtenBW/4HANA oder Business Data Cloud: Migration als Grundsatzentscheidung(23.09.2026 um 10:32 Uhr)
IT Security NachrichtenZukunftssichere Unternehmenssteuerung im Mittelstand(23.09.2026 um 10:50 Uhr)
IT Security NachrichtenWhy security belongs in the network(23.09.2026 um 10:00 Uhr)
IT Security NachrichtenNeue Cybersecurity-Pflichten für den Maschinenbau(23.09.2026 um 11:00 Uhr)
IT Security NachrichtenOpus 5.5: Anthropics neues KI-Modell - mehr Leistung, geringere Kosten(23.09.2026 um 09:50 Uhr)
IT Security NachrichtenFBI gehackt: Täter erbeuten angeblich die Daten aller Mitarbeiter(23.09.2026 um 10:30 Uhr)
IT Security NachrichtenTiefpreis-Tage: 13 Deals bei Media Markt & Saturn, die sich lohnen(23.09.2026 um 10:51 Uhr)
IT Security NachrichtenPatchday: Adobe Connect ist unter Android, macOS und Windows verwundbar(23.09.2026 um 10:45 Uhr)
IT Security DownloadsFoxit PDF Reader Download - PDF-Dateien anzeigen(23.09.2026 um 09:39 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

OSIRIS a vendor-neutral JSON format for infrastructure snapshots (IT/OT)

After years of dealing with incompatible infra exports I created and published OSIRIS v1.0.0 a vendor-neutral JSON interchange format for point-in-time infrastructure snapshots and documentation: highlighting resources and their…

0
↗ Quelle (dev.to)
Reagiere als Erste:r — dein Feedback zählt!

After years of dealing with incompatible infra exports I created and published OSIRIS v1.0.0 a vendor-neutral JSON interchange format for point-in-time infrastructure snapshots and documentation: highlighting resources and their relationships (topology diagram), with an extension mechanism that can cover OT environments as well.



Project: https://osirisjson.org/


Schema: https://osirisjson.org/schema/v1.0/osiris.schema.json


Examples: https://osirisjson.org/docs/en/osiris-examples/01-it-infrastructure






The recurring problem



If you’ve ever tried to build tooling around infrastructure data (diagramming, inventory, audit, drift/diff, documentation), you’ve likely seen the same issue:




  • Every vendor exports data differently (even when it’s JSON).

  • Every tool ends up writing its own parsers and mappings, most of them if not all are closed source.

  • Relationships (what is connected to what, where it lives, how it depends) are the first thing that becomes inconsistent or implicit.

  • Over time, you either rebuild integrations repeatedly, or you rely on undocumented tribal knowledge that lives in people heads and most of time not so well organized so you receive vague answers to your infinite questions.



The result is fragmented, tool-specific pipelines that are expensive to maintain and cause you lot of pain to have a single point of view of the infrastructure.






What OSIRIS is



OSIRIS is a vendor-neutral JSON format for describing infrastructure resources and their topological relationships across heterogeneous IT and OT environments. OSIRIS generate a static snapshot interchange format.



A snapshot describes:





  • what exists (resources)


  • how it relates (connections / relationships)


  • at a specific time (point-in-time)



It is designed to be:





  • vendor-neutral (the schema is the contract)


  • tool-friendly (consumers don’t need vendor-specific parsers)


  • extensible (namespaced extensions for vendor or domain-specific fields, including OT)






What OSIRIS is not (in v1.0.0)



OSIRIS is not:




  • infrastructure-as-Code

  • configuration management

  • telemetry/metrics/streaming events



It’s a format you can export, validate, store, diff and consume.






Producer/Consumer split (the key idea)



Instead of every tool implementing every vendor format, OSIRIS separates responsibilities:





  • Producers translate source data into OSIRIS documents
    (hyperscalers or public cloud providers inventory APIs, network device outputs, OT gateways, CMDB exports, etc.)


  • Consumers read OSIRIS documents
    (diagram generators, inventory platforms, auditors, diff tools, documentation systems)



This keeps vendor-specific logic in one place and allows multiple tools to share the same snapshot format.






What’s included today








What I’d love feedback on



If you work with infra data, I’d appreciate critiques on:



1) Core model: Are “resources + relationships” sufficient and ergonomic for real topologies?


2) Extensibility: Is the extension/namespacing approach practical and future-proof?


3) Adoption path: Which first producer would be most useful to you (cloud inventory, device CLI, Terraform state, etc.)?






What’s next



I’m working on:




  • development guidelines for contributors

  • initial core/SDK work to make producers and consumers easier to build



If you want to review the spec/schema or suggest a first producer target, comments are welcome.



OSIRIS: https://osirisjson.org/

Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten OSIRIS a vendor-neutral JSON format for infrastructure snapshots (IT/OT)

Thematisch verwandte Begriffe: OSIRIS, vendorneutral, JSON, format · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-96258 | A vulnerability has been found in onSite internet GmbH Auktion NG Auktio…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick