Talk:Acceptable Use and Security Policy: Difference between revisions
No edit summary |
(→Servers on our network: new section) |
||
| (2 intermediate revisions by the same user not shown) | |||
| Line 6: | Line 6: | ||
==antivirus== | ==antivirus== | ||
want to add 'tho shalt use antivirus' clause somewhere for all capable devices. | want to add 'tho shalt use antivirus' clause somewhere for all capable devices. | ||
==isolate networks | == isolate networks == | ||
IE staff use, workshop use (no internet), open/internet use | IE staff use, workshop use (no internet), open/internet use | ||
I understand the concept. I wonder why we need this at Maker Nexus. [[User:Jschrempp|Jschrempp]] ([[User talk:Jschrempp|talk]]) 20:06, 8 February 2022 (EST) | |||
==add sections on data handling policies.== | ==add sections on data handling policies.== | ||
# personnel information | |||
# credit card information | |||
==add section on incident handling== | ==add section on incident handling== | ||
for reference the membership handbook appropriately for conflict resolution, etc | for reference the membership handbook appropriately for conflict resolution, etc | ||
| Line 18: | Line 24: | ||
#Minimum Access Policy | #Minimum Access Policy | ||
#Password Policy | #Password Policy | ||
== Servers on our network == | |||
I think we should have a policy (I though we did) that members are not allowed to run servers on our network without prior written authorization. This would include no TOR servers, no BitTorrent servers or clients, no bit coin mining. The problem is that these servers can consume lots of bandwidth and lots of power. [[User:Jschrempp|Jschrempp]] ([[User talk:Jschrempp|talk]]) 20:09, 8 February 2022 (EST) | |||
Latest revision as of 21:09, 8 February 2022
Items for discussion
What separate policies do we want to put in around the OPEN DEVICES?
IE you have to use resetting software, etc
antivirus
want to add 'tho shalt use antivirus' clause somewhere for all capable devices.
isolate networks
IE staff use, workshop use (no internet), open/internet use
I understand the concept. I wonder why we need this at Maker Nexus. Jschrempp (talk) 20:06, 8 February 2022 (EST)
add sections on data handling policies.
- personnel information
- credit card information
add section on incident handling
for reference the membership handbook appropriately for conflict resolution, etc
Other topics
Figure out what do we need of
- Data Classification Policy
- Data Protection Standard
- Social Media Policy
- Minimum Access Policy
- Password Policy
Servers on our network
I think we should have a policy (I though we did) that members are not allowed to run servers on our network without prior written authorization. This would include no TOR servers, no BitTorrent servers or clients, no bit coin mining. The problem is that these servers can consume lots of bandwidth and lots of power. Jschrempp (talk) 20:09, 8 February 2022 (EST)
