some minor touchups, review for POLICY now?

git-svn-id: http://svn.cacert.org/CAcert/Policies@1954 14b1bab8-4ef6-0310-b690-991c95c89dfd
This commit is contained in:
Ian Grigg 2010-07-07 11:59:30 +00:00
parent 1ae90543af
commit d2bb32bb0e

View file

@ -234,12 +234,11 @@ for each class of certificate.
<p class="q"> .x will change to .1 in the first approved instance.</p> <p class="q"> .x will change to .1 in the first approved instance.</p>
</li> </li>
<li> <li>
&copy; CAcert Inc. 2006-2009. &copy; CAcert Inc.
<!-- note that CCS policies must be controlled by CAcert Inc. --> <!-- note that CCS policies must be controlled by CAcert Inc. -->
</li> </li>
<li> <li>
Issued under the CAcert document licence policy, Licensed under the CAcert document licence.
as and when made policy.
See <a href="http://wiki.cacert.org/wiki/PolicyDrafts/DocumentLicence"> See <a href="http://wiki.cacert.org/wiki/PolicyDrafts/DocumentLicence">
PolicyDrafts/DocumentLicence</a>. PolicyDrafts/DocumentLicence</a>.
<ul class="q"> <ul class="q">
@ -274,14 +273,6 @@ for each class of certificate.
and must disappear in the POLICY. and must disappear in the POLICY.
</span> </span>
</li> </li>
<!--
<li>
Some content is incorporated under
<!-- <a href="http://xkcd.com/license.html">Creative Commons license</a> -->
<!-- from <a href="http://xkcd.com/">xkcd.com</a>. -->
198 177 515
</li>
-->
</ul> </ul>
<p> <p>
@ -573,8 +564,6 @@ for these applications:
in any application that requires or expects identity. in any application that requires or expects identity.
</li></ul> </li></ul>
<!-- <center><a href="http://xkcd.com/341/"> <img src="http://imgs.xkcd.com/comics/1337_part_1.png"> </a> </center> -->
<h4><a name="p1.4.4" id="p1.4.4">1.4.4. Limited certificate uses</a></h4> <h4><a name="p1.4.4" id="p1.4.4">1.4.4. Limited certificate uses</a></h4>
<p> <p>
@ -1213,8 +1202,6 @@ Email addresses are verified according to
<a href="#p4.2.2">&sect;4.2.2.</a> <a href="#p4.2.2">&sect;4.2.2.</a>
</p> </p>
<!-- <center><a href="http://xkcd.com/327/"> <img src="http://imgs.xkcd.com/comics/exploits_of_a_mom.png"> </a> </center> -->
<h4><a name="p3.1.3" id="p3.1.3">3.1.3. Anonymity or pseudonymity of subscribers</a></h4> <h4><a name="p3.1.3" id="p3.1.3">3.1.3. Anonymity or pseudonymity of subscribers</a></h4>
<p> <p>
@ -1550,10 +1537,6 @@ Each Member is assured according to Assurance Policy
(<a href="http://www.cacert.org/policy/AssurancePolicy.php">COD13</a>). (<a href="http://www.cacert.org/policy/AssurancePolicy.php">COD13</a>).
</p> </p>
<!-- <center><a href="http://xkcd.com/364/"> <img src="http://imgs.xkcd.com/comics/responsible_behavior.png"> </a> </center> -->
<p> <p>
<b>Certificates.</b> <b>Certificates.</b>
Based on the total number of Assurance Points Based on the total number of Assurance Points
@ -1992,8 +1975,6 @@ and the Organisation Handbook.
<h3><a name="p4.3" id="p4.3">4.3. Certificate issuance</a></h3> <h3><a name="p4.3" id="p4.3">4.3. Certificate issuance</a></h3>
<!-- <a href="http://xkcd.com/153/"> <img align="right" src="http://imgs.xkcd.com/comics/cryptography.png"> </a> -->
<h4><a name="p4.3.1" id="p4.3.1">4.3.1. CA actions during certificate issuance</a></h4> <h4><a name="p4.3.1" id="p4.3.1">4.3.1. CA actions during certificate issuance</a></h4>
<p> <p>
@ -2409,7 +2390,6 @@ or servers within that organisation,
but the Organisation is the responsible person. but the Organisation is the responsible person.
</p> </p>
<!-- <a href="http://xkcd.com/424/"> <img align="right" src="http://imgs.xkcd.com/comics/security_holes.png"> </a> -->
<p> <p>
<b>Software Agent.</b> <b>Software Agent.</b>
If a Member is relying on a CAcert root embedded in If a Member is relying on a CAcert root embedded in
@ -2612,8 +2592,6 @@ No stipulation.
<!-- *************************************************************** --> <!-- *************************************************************** -->
<h2><a name="p5" id="p5">5. FACILITY, MANAGEMENT, AND OPERATIONAL CONTROLS</a></h2> <h2><a name="p5" id="p5">5. FACILITY, MANAGEMENT, AND OPERATIONAL CONTROLS</a></h2>
<!-- <a href="http://xkcd.com/87/"> <img align="right" src="http://imgs.xkcd.com/comics/velociraptors.jpg"> </a> -->
<h3><a name="p5.1" id="p5.1">5.1. Physical controls</a></h3> <h3><a name="p5.1" id="p5.1">5.1. Physical controls</a></h3>
<p> <p>
@ -2758,7 +2736,6 @@ Roles strive in general for separation of duties, either along the lines of
<p> <p>
Refer to Security Policy 9.1.3 (<a href="http://svn.cacert.org/CAcert/Policies/SecurityPolicy.html">COD8</a>). Refer to Security Policy 9.1.3 (<a href="http://svn.cacert.org/CAcert/Policies/SecurityPolicy.html">COD8</a>).
</p> </p>
<!-- <a href="http://xkcd.com/538/"> <img align="right" src="http://imgs.xkcd.com/comics/security.png"> </a> -->
<h4><a name="p5.3.3" id="p5.3.3">5.3.3. Training requirements</a></h4> <h4><a name="p5.3.3" id="p5.3.3">5.3.3. Training requirements</a></h4>
<p>No stipulation.</p> <p>No stipulation.</p>
@ -2943,8 +2920,6 @@ the same, save for some other party filing the dispute.
<h2><a name="p6" id="p6">6. TECHNICAL SECURITY CONTROLS</a></h2> <h2><a name="p6" id="p6">6. TECHNICAL SECURITY CONTROLS</a></h2>
<!-- <a href="http://xkcd.com/221/"> <img align="right" src="http://imgs.xkcd.com/comics/random_number.png"> </a> -->
<h3><a name="p6.1" id="p6.1">6.1. Key Pair Generation and Installation</a></h3> <h3><a name="p6.1" id="p6.1">6.1. Key Pair Generation and Installation</a></h3>
<h4><a name="p6.1.1" id="p6.1.1">6.1.1. Key Pair Generation</a></h4> <h4><a name="p6.1.1" id="p6.1.1">6.1.1. Key Pair Generation</a></h4>
@ -3050,8 +3025,6 @@ This is effected by means of the 'template' system.
<!-- <a href="http://xkcd.com/257/"> <img align="right" src="http://imgs.xkcd.com/comics/code_talkers.png"> </a> -->
<h3><a name="p6.2" id="p6.2">6.2. Private Key Protection and Cryptographic Module Engineering Controls</a></h3> <h3><a name="p6.2" id="p6.2">6.2. Private Key Protection and Cryptographic Module Engineering Controls</a></h3>
@ -3426,8 +3399,6 @@ networks, law (including multijurisdictional issues),
identity systems, fraud, IT management. identity systems, fraud, IT management.
</p> </p>
<!-- <center><a href="http://xkcd.com/511/"> <img src="http://imgs.xkcd.com/comics/sleet.png"> </a> </center> -->
<p> <p>
<b>Code Auditors.</b> <b>Code Auditors.</b>
See Security Policy, sections 7, 9.1. See Security Policy, sections 7, 9.1.
@ -3622,7 +3593,6 @@ or rulings by Arbitrator.
<h3><a name="p9.4" id="p9.4">9.4. Privacy of personal information</a></h3> <h3><a name="p9.4" id="p9.4">9.4. Privacy of personal information</a></h3>
<!-- <center><a href="http://xkcd.com/46/"> <img src="http://imgs.xkcd.com/comics/secrets.jpg"> </a> </center> -->
<p> <p>
Privacy is covered by the Privacy is covered by the
CCA (COD9) CCA (COD9)
@ -3697,8 +3667,6 @@ and the commitment to security of Members,
some deviations are necessary. some deviations are necessary.
</p> </p>
<!-- <center><a href="http://xkcd.com/225/"> <img src="http://imgs.xkcd.com/comics/open_source.png"> </a> </center> -->
<h4><a name="p9.5.1" id="p9.5.1">9.5.1. Ownership and Licence</a></h4> <h4><a name="p9.5.1" id="p9.5.1">9.5.1. Ownership and Licence</a></h4>
<p> <p>