From a9d00ee03d8c4b2b4db0c920dfa6abfdc0a67a86 Mon Sep 17 00:00:00 2001 From: saya Date: Fri, 10 May 2019 15:29:54 -0400 Subject: [PATCH] update content for the Guidance page --- track/templates/en/guidance.html | 22 ++++++++++++++------- track/templates/fr/guidance.html | 34 +++++++++++++++++++++----------- 2 files changed, 37 insertions(+), 19 deletions(-) diff --git a/track/templates/en/guidance.html b/track/templates/en/guidance.html index fdcce96..55fb8d0 100644 --- a/track/templates/en/guidance.html +++ b/track/templates/en/guidance.html @@ -18,7 +18,7 @@

Read guidance

@@ -34,8 +34,15 @@

Read guidance

-
  • Provide an up-to-date list of all domain and sub-domains of the publicly-accessible websites and web services to the following website: Submit your institution's domains.
  • -
  • Perform an assessment of the domains and sub-domains to determine the status of the configuration. Tools available to support this activity includes GC HTTPS Dashboard, SSL Labs, Hardenize, etc.
  • +
  • Provide an up-to-date list of all domain and sub-domains of the publicly-accessible websites and web services to TBS Cybersecurity. + + +
  • +
  • Perform an assessment of the domains and sub-domains to determine the status of the configuration. Tools available to support this activity includes GC HTTPS Dashboard, SSL Labs, Hardenize, SSLShopper, etc.
  • Develop a prioritized implementation schedule for each of the affected websites and web services, following the recommended prioritization approach in the ITPIN: @@ -43,11 +50,11 @@

    Read guidance

  • 6.2.1 Newly developed websites and web services must adhere to this ITPIN upon launch.
  • 6.2.2 Websites and web services that involve an exchange of personal information or other sensitive information must receive priority following a risk-based approach, and migrate as soon as possible.
  • -
  • 6.2.3 All remaining websites and web services must be accessible through a secure connection, as outlined in Section 6.1, by September 30, 2019.
  • +
  • 6.2.3 All remaining websites and web services must be accessible through a secure connection, as outlined in Section 6.1, by December 31, 2019.
  • -
  • Engage the departmental IT group for implementation as appropriate. +
  • Engage departmental IT planning groups for implementation as appropriate.