Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Clarify that an Update System is Necessary for Security #135

Open
mmccool opened this issue Jul 1, 2019 · 1 comment
Open

Clarify that an Update System is Necessary for Security #135

mmccool opened this issue Jul 1, 2019 · 1 comment
Assignees

Comments

@mmccool
Copy link
Contributor

mmccool commented Jul 1, 2019

In w3ctag/design-reviews#355, it is mentioned that section on update in the Arch doc seems to imply that one should avoid updates https://w3c.github.io/wot-architecture/#sec-security-consideration-update-provisioning, however such updates are important to maintain security. A sentence should be added (before the mitigation) that updates are necessary to maintain the security of systems (the mitigation then states that updates need to be performed securely...).

@mmccool mmccool self-assigned this Jul 1, 2019
@mmccool
Copy link
Contributor Author

mmccool commented Apr 6, 2020

Related to lifecycle discussion, eg. "maintenance" state. When lifecycle is done in Architecture, we will need to rewrite the lifecycle section in S&PG document, and when THAT is done, we can close this issue.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant