Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

NS-006: Fix 1.2.2 encrypted connections scoping #40

Merged
merged 5 commits into from
Dec 17, 2024

Conversation

danjeffery
Copy link
Contributor

No description provided.

@danjeffery danjeffery requested a review from a team as a code owner October 9, 2024 21:43
@danjeffery danjeffery changed the title Fix 1.2.2 encrypted connections scoping NS-006: Fix 1.2.2 encrypted connections scoping Oct 9, 2024
Copy link
Contributor

@miguelantonios miguelantonios left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Notes from Oct 16th Cloud Services meeting

CA Infrastructure and Network Equipment MUST be implemented and configured to authenticate and encrypt connections:
Connections to the CA Infrastructure MUST be authenticated and encrypted, except where documented that a formal specification prohibits or limits the use of authentication and/or encryption.

Connections within the CA Infrastructure SHOULD be authenticated and encrypted.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cloud Services Discussion:

  • Untrusted networks SHALL be encrypted and authn while Trusted networks SHOULD but is not required though moving to a zero trust model is what we're going towards.
  • Modern architecture using microservices SHOULD enable encrypting and authn.
  • Will have to have more discussions on what is in scope for CA Infrastructure as it is salient for this PR
  • Should clarify Network Equipment definition later (either as part of this PR or another one)

@clintwilson clintwilson merged commit 607a34d into cabforum:main Dec 17, 2024
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants