31

The “security.txt” proposal reached last step in the IETF process

 4 years ago
source link: https://mailarchive.ietf.org/arch/msg/ietf-announce/OFuiGlVv6WgvEEABaGmnYi120yU
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

Last Call: <draft-foudil-securitytxt-08.txt> (A Method for Web Security Policies) to Informational RFC

The IESG <[email protected]> Mon, 09 December 2019 17:39 UTC

Return-Path: <[email protected]>

X-Original-To: [email protected]

Delivered-To: [email protected]

Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id DD87D12083E; Mon, 9 Dec 2019 09:39:08 -0800 (PST)

MIME-Version: 1.0

Content-Type: text/plain; charset="utf-8"

Content-Transfer-Encoding: 7bit

From: The IESG <[email protected]>

To: "IETF-Announce" <[email protected]>

Subject: Last Call: <draft-foudil-securitytxt-08.txt> (A Method for Web Security Policies) to Informational RFC

X-Test-IDTracker: no

X-IETF-IDTracker: 6.113.0

Auto-Submitted: auto-generated

Precedence: bulk

Sender: <[email protected]>

CC: [email protected], [email protected], [email protected]

Content-Transfer-Encoding: 7bit

Reply-To: [email protected]

Content-Type: text/plain; charset="utf-8"

MIME-Version: 1.0

Message-ID: <[email protected]>

Date: Mon, 09 Dec 2019 09:39:08 -0800

Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf-announce/OFuiGlVv6WgvEEABaGmnYi120yU>

X-BeenThere: [email protected]

X-Mailman-Version: 2.1.29

List-Id: "IETF announcement list. No discussions." <ietf-announce.ietf.org>

List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf-announce>, <mailto:[email protected]?subject=unsubscribe>

List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf-announce/>

List-Post: <mailto:[email protected]>

List-Help: <mailto:[email protected]?subject=help>

List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf-announce>, <mailto:[email protected]?subject=subscribe>

X-List-Received-Date: Mon, 09 Dec 2019 17:39:09 -0000

The IESG has received a request from an individual submitter to consider the
following document: - 'A Method for Web Security Policies'
  <draft-foudil-securitytxt-08.txt> as Informational RFC

The IESG plans to make a decision in the next few weeks, and solicits final
comments on this action. Please send substantive comments to the
<a href="mailto:[email protected]">[email protected]</a> mailing lists by 2020-01-06. Exceptionally, comments may
be sent to <a href="mailto:[email protected]">[email protected]</a> instead. In either case, please retain the beginning
of the Subject line to allow automated sorting.

Abstract


   When security vulnerabilities are discovered by independent security
   researchers, they often lack the channels to report them properly.
   As a result, security vulnerabilities may be left unreported.  This
   document defines a format ("security.txt") to help organizations
   describe the process for security researchers to follow in order to
   report security vulnerabilities.




The file can be obtained via
<a href="https://datatracker.ietf.org/doc/draft-foudil-securitytxt/" rel="nofollow">https://datatracker.ietf.org/doc/draft-foudil-securitytxt/</a>

IESG discussion can be tracked via
<a href="https://datatracker.ietf.org/doc/draft-foudil-securitytxt/ballot/" rel="nofollow">https://datatracker.ietf.org/doc/draft-foudil-securitytxt/ballot/</a>


No IPR declarations have been submitted directly on this I-D.

About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK