FHIR Chat · Security Check List · Security and Privacy

Stream: Security and Privacy

Topic: Security Check List


view this post on Zulip Grahame Grieve (Jul 16 2018 at 20:37):

in GF#16528, security proposese splitting up the check list on build.fhir.org/safety.html to have some of the check list on the security page.

view this post on Zulip Grahame Grieve (Jul 16 2018 at 20:37):

I personally disagree with this, but looking at this brought us to look at the check list at build.fhir.org/security.html

view this post on Zulip Grahame Grieve (Jul 16 2018 at 20:37):

the problem with this is that it's not an actual check list.

view this post on Zulip John Moehrke (Jul 16 2018 at 20:50):

agree that rationalization would need to be done.

view this post on Zulip John Moehrke (Jul 16 2018 at 20:50):

What I want is that there is not perceiption of two different things

view this post on Zulip John Moehrke (Jul 16 2018 at 20:52):

so I am okay with either solution, just concerned that today there is confusion on if they are same or different

view this post on Zulip Grahame Grieve (Jul 16 2018 at 21:01):

if what are the same or different?

view this post on Zulip John Moehrke (Jul 16 2018 at 22:17):

for example where one requires TLS 1.1 and the other requires TLS 1.2

view this post on Zulip Grahame Grieve (Jul 16 2018 at 22:19):

well that would be a problem, but it's not the case now....

view this post on Zulip John Moehrke (Jul 16 2018 at 22:27):

true it isn't today.. but what mechanism do we have to assure it doesn't happen?

view this post on Zulip Grahame Grieve (Jul 16 2018 at 23:52):

our existing process - discussion/review/ballot etc. why should it happen?

view this post on Zulip Grahame Grieve (Aug 07 2018 at 12:40):

@John Moehrke ping on this

view this post on Zulip John Moehrke (Aug 08 2018 at 21:43):

What?

view this post on Zulip Grahame Grieve (Aug 08 2018 at 22:39):

what is the status of this? Security.html still has check boxes as if it is a check list, but it isn't actually a check list

view this post on Zulip John Moehrke (Aug 10 2018 at 15:52):

Oh, good thing you clarified. I think best is to just revert back without the checkboxes... Kathleen is proposing equivilalnt items for the safety checklist. Yes, she will get these in during the ballot time, not now. -- I can remove the checkboxes today.

view this post on Zulip John Moehrke (Aug 10 2018 at 15:55):

@Grahame Grieve can we auto-approve GF#17658, or should I run it through security wg next week? It is not a significant change.

view this post on Zulip Grahame Grieve (Aug 10 2018 at 20:59):

so yes, just remove the checkboxes, and we can sort it out in ballot


Last updated: Apr 12 2022 at 19:14 UTC