Uploaded image for project: 'Vnfsdk'
  1. Vnfsdk
  2. VNFSDK-480

Answer the Crypto used network CII Question

XMLWordPrintable

      Go to https://bestpractices.coreinfrastructure.org
      1) Click Projects
      2) Search for your project
      3) Click Login (at the top)
      4) Click Edit (at the top)
      5) Click the button that says [silver]
      6) Scroll to the bottom, click [v] Security
      7) Search for “crypto_used_network”
      8) Fill in your answers
      9) Click one of the green buttons [Save (and continue)] or [Submit (and exit)]

      For each incoming network connection supported by your application:
      1) Does it enable one of the insecure protocols or versions by default?
      2) Is a variable needed to turn on the secure protocol, compared to turning on the insecure protocol?
      3) Is the secure protocol disabled if the insecure protocol is enabled? (Is it a toggle?)
      4) Is an insecure protocol accidently enabled if something is wrong with something needed for the secure protocol to work? (e.g. a missing key)
      5) (no answers are good)

      If there are no incoming connections:
      1) Click (N/A)
      2) In the description, enter the date (e.g., [2019/08/26]) and an indication why N/A was appropriate

      If NO for all incoming connections:
      1) Click (Met)
      2) In the description, enter the date (e.g., [2019/08/26]) and an indication why (Met) is appropriate

      If some of the answers are YES (you have some insecure protocols/versions enabled by default):
      1) Click (Unmet)
      2) In the description, enter the date (e.g., [2019/08/26]) and a description where something was not met.
      3) File JIRA tickets for each issue that needs resolution.
      4) In the description, enter the date and document which pieces meet or do not meet the criteria.
      5) You can also document which pieces DO meet the criteria, if there is a mixture.

       

      After answering the CII question, please move this ticket to either Submitted or Delivered state. (Do not close the ticket.)

            kopasiak kopasiak
            kopasiak kopasiak
            Votes:
            0 Vote for this issue
            Watchers:
            6 Start watching this issue

              Created:
              Updated:
              Resolved: