Commit 9c9a774
authored
Document vulnerability management timeframes (#308)
Documenting these is required by Section 4.3 of the Network and
Certificate System Security Requirements, version 2.0.5:
> The CA MUST establish one or more timeframes for reviewing, responding
to, and remediating all identified vulnerabilities.
> The CA MUST document in Section 6.7 of their Certificate Policy and/or
Certification Practices Statement each timeframe established for
responding to and remediating vulnerabilities.
Fixes #3051 parent eee4c2d commit 9c9a774
1 file changed
+2
-4
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
972 | 972 | | |
973 | 973 | | |
974 | 974 | | |
975 | | - | |
| 975 | + | |
976 | 976 | | |
977 | | - | |
978 | | - | |
979 | | - | |
| 977 | + | |
980 | 978 | | |
981 | 979 | | |
982 | 980 | | |
| |||
0 commit comments