Talk:Acceptable Use and Security Policy: Difference between revisions

From makernexuswiki
No edit summary
 
(2 intermediate revisions by the same user not shown)
Line 6: Line 6:
==antivirus==
==antivirus==
want to add 'tho shalt use antivirus' clause somewhere for all capable devices.
want to add 'tho shalt use antivirus' clause somewhere for all capable devices.
==isolate networks.==
== isolate networks ==
IE staff use, workshop use (no internet), open/internet use
IE staff use, workshop use (no internet), open/internet use
I understand the concept. I wonder why we need this at Maker Nexus. [[User:Jschrempp|Jschrempp]] ([[User talk:Jschrempp|talk]]) 20:06, 8 February 2022 (EST)
==add sections on data handling policies.==
==add sections on data handling policies.==
# personnel information
# credit card information
==add section on incident handling==
==add section on incident handling==
for reference the membership handbook appropriately for conflict resolution, etc
for reference the membership handbook appropriately for conflict resolution, etc
Line 18: Line 24:
#Minimum Access Policy  
#Minimum Access Policy  
#Password Policy
#Password Policy
== Servers on our network ==
I think we should have a policy (I though we did) that members are not allowed to run servers on our network without prior written authorization. This would include no TOR servers, no BitTorrent servers or clients, no bit coin mining. The problem is that these servers can consume lots of bandwidth and lots of power. [[User:Jschrempp|Jschrempp]] ([[User talk:Jschrempp|talk]]) 20:09, 8 February 2022 (EST)

Latest revision as of 21:09, 8 February 2022

Items for discussion

What separate policies do we want to put in around the OPEN DEVICES?

IE you have to use resetting software, etc

antivirus

want to add 'tho shalt use antivirus' clause somewhere for all capable devices.

isolate networks

IE staff use, workshop use (no internet), open/internet use

I understand the concept. I wonder why we need this at Maker Nexus. Jschrempp (talk) 20:06, 8 February 2022 (EST)

add sections on data handling policies.

  1. personnel information
  2. credit card information

add section on incident handling

for reference the membership handbook appropriately for conflict resolution, etc

Other topics

Figure out what do we need of

  1. Data Classification Policy
  2. Data Protection Standard
  3. Social Media Policy
  4. Minimum Access Policy
  5. Password Policy

Servers on our network

I think we should have a policy (I though we did) that members are not allowed to run servers on our network without prior written authorization. This would include no TOR servers, no BitTorrent servers or clients, no bit coin mining. The problem is that these servers can consume lots of bandwidth and lots of power. Jschrempp (talk) 20:09, 8 February 2022 (EST)